Hackers Exploit JFrog Artifactory Flaws to Bypass Authentication and Gain Admin Access
Wiz Research observes multiple attackers exploiting three JFrog Artifactory flaws, including default-configuration authentication bypass CVE-2026-82329, to gain admin access and deploy backdoors.
Attackers chain CVE-2026-42018 and CVE-2026-42016 to exchange anonymous JWTs for administrator-scoped tokens, or exploit CVE-2026-82329 directly via the registry join endpoint to obtain admin privileges under default configuration. Post-exploitation observed by Wiz includes persistent admin users created within five minutes, malicious Groovy plugins for command execution, and Rust-based backdoors dropped to /tmp, /var/tmp, and /dev/shm with C2 communications. Compromise exposes software artifacts, repository credentials, CI/CD integrations, and cluster secrets, creating supply chain risks. Fixed releases include 7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, and 7.161.20.
- Chaining CVE-2026-42018 and CVE-2026-42016 lets unauthenticated attackers escalate anonymous tokens to administrator scope.
- CVE-2026-82329 grants admin privileges under default configuration via POST /access/api/v1/registry/join.
- Observed post-exploitation includes persistent accounts, malicious Groovy plugins, and Rust backdoors in writable directories.
- Attackers extracted cluster join keys, minted tokens, and enumerated users and repositories across incidents.
- Fixed versions include 7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, and 7.161.20.
Vulnerabilities mentionedAll →
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-42016 | Token Scope Validation Flaw Enables Privilege Escalation in JFrog Artifactory JFrog Artifactory (Self-Hosted) versions before 7.133.11 fail to validate a token's scope, checking only the token's signature and issuer, which constitutes an incorrect authorization flaw (CWE-863). A remote, authenticated user with low privileges can obtain or present a token whose scope is never verified, bypassing authorization checks and escalating to higher privileges. Successful attackers gain administrative control of the Artifactory instance; in observed attacks this flaw has been chained with CVE-2026-42018 and CVE-2026-82329 to bypass authentication, take admin control, and deploy backdoor malware. Only self-hosted Artifactory deployments are within the stated affected scope. Exploitation is confirmed in the wild and the vulnerability was added to CISA's KEV catalog on 2026-09-11, although no public proof-of-concept code is known. Do: Upgrade self-hosted Artifactory to version 7.133.11 or later immediately, in line with vendor instructions and CISA KEV/BOD 26-04 timelines. Audit issued tokens and logs for tokens carrying elevated scope granted to low-privilege users, and look for signs of compromise such as unexpected admin accounts or persistence, given reported backdoor deployments. Also patch CVE-2026-42018 and CVE-2026-82329, which attackers are chaining with this flaw. | 8.8 | <1% | KEV |
| largetens of thousands of self-hosted instances (subset internet-exposed) | |
| CVE-2026-42018 | Improper Authentication in JFrog Artifactory Exposes Internal Anonymous Tokens JFrog Artifactory contains an improper authentication flaw (CWE-287) in which the server may return its internal anonymous-user token to an unauthenticated caller, even on instances where anonymous access is disabled. An attacker triggers the issue by sending unauthenticated requests to the affected Artifactory interface over the network; the vector requires no privileges or user interaction and is of low complexity. Successful abuse yields the internal anonymous-user token, which can then be used to reach sensitive resources (such as repositories or artifacts) that should be protected when anonymous access is disabled, with high confidentiality impact but no integrity or availability impact. Any organization running an affected JFrog Artifactory deployment - particularly those relying on disabled anonymous access as a control - is affected, though only instances where the vulnerable endpoint is reachable are actually exposed. Exploitation has been reported in the wild as part of an ongoing Artifactory attack campaign alongside CVE-2026-42016 and CVE-2026-82329, although there is no public PoC and the flaw is not yet in the CISA KEV catalog. Do: Upgrade Artifactory to the fixed release identified in JFrog's security advisory (JFrog is the assigning CNA; exact version numbers are not included in the available data). Until patched, restrict unauthenticated network access to Artifactory, verify the anonymous-access configuration, and review logs for unauthenticated requests that retrieved tokens or accessed sensitive resources. Because in-the-wild exploitation has been reported alongside CVE-2026-42016 and CVE-2026-82329, patch for all three and consider rotating internal/anonymous tokens and auditing artifact access. | 7.5 | <1% | KEV |
| large≈ tens of thousands of deployments (only the subset with anonymous access disabled and a reachable endpoint is affected) | |
| CVE-2026-82329 | Improper Authentication in JFrog Artifactory Allows Unauthenticated Admin Access JFrog Artifactory contains an improper authentication flaw (CWE-287) that, under the product's default configuration, can let an unauthenticated attacker with network access obtain administrative privileges. The weakness is reachable over the network with no privileges or user interaction required, which is why it carries a critical 9.8 CVSS 3.1 score; an attacker who succeeds effectively gains full administrator control of the artifact repository, and public reporting describes attackers using the flaw to mint admin tokens days after disclosure. Any organization running JFrog Artifactory is in scope — CISA's entry lists the product without version detail, so deployments should verify their versions against JFrog's advisory (AV26-867, Update 1) — with internet-exposed instances at greatest risk. Exploitation is confirmed in the wild: CISA added the CVE to its Known Exploited Vulnerabilities Catalog on 2026-09-02, a public proof-of-concept is available, and news headlines report active exploitation alongside related Artifactory flaws CVE-2026-42016 and CVE-2026-42018. Do: Upgrade Artifactory to a fixed release per JFrog's advisory AV26-867 (Update 1) — the exact affected and fixed versions are not specified in this data, so check the advisory before patching. Until patched, restrict network access to the Artifactory UI and APIs to trusted sources (VPN/firewall allowlists) and review the instance for unauthorized admin tokens or accounts, as in-the-wield attackers have been minting admin tokens. CISA KEV stakeholders must apply mitigations in line with BOD 26-04 within the required timeline or discontinue use of the product. | 9.8 | 8% | KEV PoC ×2 |
| largetens of thousands of deployments, many of them internet-exposed (estimate) |
Indicators of compromiseauto-extracted · verify before use · export allAll →
| Type | Indicator | Context |
|---|---|---|
| domain | gitclone.org | xploiting CVE-2026-82329 2026-09-02 Not provided hxxp://log.gitclone[.]org:45678/smtp Payload download URL following CVE-2026-42018/ |
| sha1 | 513a907b69edffc3cb77a494da395178d21ef9bd | mtp Second-stage payload download URL 2026-09-07 2026-09-08 513a907b69edffc3cb77a494da395178d21ef9bd SHA-1 hash of /tmp/.z payload 2026-09-06 2026-09-08 64.207. |
| url | http://3.88.162[ | 026-42018/CVE-2026-42016 exploitation 2026-09-06 2026-09-08 hxxp://3.88.162[.]79:36789/smtp Second-stage payload download URL 2026-09-07 |
| url | http://log.gitclone[ | Actor IP exploiting CVE-2026-82329 2026-09-02 Not provided hxxp://log.gitclone[.]org:45678/smtp Payload download URL following CVE-2026-420 |
Full article760 words · extracted from gbhackers.com · click to collapse
Threat actors are actively exploiting three vulnerabilities in JFrog Artifactory, CVE-2026-42016, CVE-2026-42018, and CVE-2026-82329, to bypass authentication, escalate privileges, and gain administrative control of exposed instances.
Wiz Research reports that multiple attackers are targeting self-hosted Artifactory deployments in the wild, using both a two-bug token escalation chain and a separate critical authentication-bypass flaw.
A successful compromise can expose software artifacts, repository credentials, CI/CD integrations, configuration data, and cluster secrets, creating significant supply chain risks for affected organizations.
Hackers Exploit JFrog Artifactory Flaws
The first attack chain combines CVE-2026-42018, an improper authentication issue, with CVE-2026-42016, a token-scope validation flaw.
CVE-2026-42018 can cause Artifactory to return an internal anonymous-user JWT to an unauthenticated requester, even when anonymous access is disabled. Attackers exploit CVE-2026-42016 to exchange this low-privileged token for an administrator-scoped token.
Observed requests begin with POST /access/api/v1/aws/token/(with a trailing slash) and return HTTP 200 with an anonymous JWT. The attacker then submits this token to POST /access/api/v1/tokens and receives an administrator-scoped credential.
Although the identity may still appear as token:anonymous, it possesses administrative permissions. In some incidents, attackers created a persistent admin user within five minutes of initial access.
The third vulnerability, CVE-2026-82329, offers a more direct route to full compromise. This critical vulnerability affects Artifactory under its default configuration, allowing an unauthenticated, network-based attacker to obtain administrative privileges. Wiz observed attackers triggering this issue via POST /access/api/v1/registry/join, which returned HTTP 201 along with an admin-scoped token.
Post-exploitation activities varied across environments but included creating persistent accounts through PUT /api/security/users/<username>, token minting, user and repository enumeration, configuration theft, and extraction of cluster join keys.
Researchers also identified malicious Groovy plugins deployed through Artifactory’s native plugin framework that enabled arbitrary server-side command execution.
In other cases, attackers used droppers to download Rust-based backdoors to writable locations such as /tmp, /var/tmp, and /dev/shm, and then established command-and-control communications.
Administrators should urgently upgrade vulnerable instances. JFrog’s remediated releases include versions 7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, and 7.161.20 or later, depending on the deployed release branch. Version 7.133.11 and later fixes CVE-2026-42016.
Defenders should prioritize internet-exposed Artifactory servers, limit access to trusted networks, and review logs for suspicious token issuance, anonymous identity activity, registry join requests, newly created administrative users, plugin deployments, and configuration-access events.
Correlate any successful requests to the vulnerable endpoints with follow-on account creation, token enumeration, or payload delivery activities.
Affected Versions
| CVE | Vulnerability | Affected versions | Fixed versions |
|---|---|---|---|
| CVE-2026-82329 | Authentication bypass | Prior to 7.111.21; 7.117.0–7.117.27; 7.125.0–7.125.19; 7.133.0–7.133.28; 7.146.0–7.146.37; 7.161.0–7.161.19 | 7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, 7.161.20 |
| CVE-2026-42018 | Anonymous token exposure | Prior to 7.111.20; 7.117.0–7.117.27; 7.125.0–7.125.19; 7.133.0–7.133.28; 7.146.0–7.146.8 | 7.111.20, 7.117.28, 7.125.20, 7.133.29, 7.146.9 |
| CVE-2026-42016 | Privilege escalation | Prior to 7.133.11 | 7.133.11 and later |
Ioc
| Indicator | Description | First seen | Last seen |
|---|---|---|---|
93.104.155[.]133 | Actor IP exploiting CVE-2026-42018/CVE-2026-42016 | 2026-08-28 | 2026-09-07 |
149.102.229[.]150 | Actor IP exploiting CVE-2026-42018/CVE-2026-42016 | 2026-08-30 | 2026-08-30 |
186.247.79[.]240 | Actor IP exploiting CVE-2026-42018 | 2026-09-02 | 2026-09-02 |
182.62.201[.]69 | Actor IP exploiting CVE-2026-42018 | 2026-09-04 | 2026-09-04 |
146.19.216[.]120 | Actor IP exploiting CVE-2026-82329 | 2026-09-01 | 2026-09-01 |
185.190.58[.]172 | Actor IP exploiting CVE-2026-82329 | 2026-09-03 | 2026-09-03 |
45.61.176[.]88 | Actor IP exploiting CVE-2026-82329 | 2026-09-02 | 2026-09-04 |
223.144.227[.]110 | Actor IP exploiting CVE-2026-82329 | 2026-09-04 | 2026-09-04 |
129.121.56[.]234 | Actor IP exploiting CVE-2026-82329 | 2026-09-04 | 2026-09-04 |
16.54.250[.]190 | Actor IP exploiting CVE-2026-82329 | 2026-09-04 | 2026-09-04 |
105.188.75[.]16 | Actor IP exploiting CVE-2026-82329 | 2026-09-03 | 2026-09-03 |
103.124.165[.]42 | Actor IP exploiting CVE-2026-82329 | 2026-09-03 | 2026-09-03 |
176.88.121[.]152 | Actor IP exploiting CVE-2026-82329 | 2026-09-03 | 2026-09-03 |
155.254.120[.]23 | Actor IP exploiting CVE-2026-82329 | 2026-09-02 | 2026-09-02 |
220.246.124[.]92 | Actor IP exploiting CVE-2026-82329 | 2026-09-06 | 2026-09-07 |
15.157.64[.]113 | Actor IP exploiting CVE-2026-82329 | 2026-09-04 | 2026-09-04 |
104.28.251[.]139 | Actor IP exploiting CVE-2026-82329 | 2026-09-04 | 2026-09-04 |
137.184.111[.]69 | Actor IP exploiting CVE-2026-82329 | 2026-09-02 | Not provided |
hxxp://log.gitclone[.]org:45678/smtp | Payload download URL following CVE-2026-42018/CVE-2026-42016 exploitation | 2026-09-06 | 2026-09-08 |
hxxp://3.88.162[.]79:36789/smtp | Second-stage payload download URL | 2026-09-07 | 2026-09-08 |
513a907b69edffc3cb77a494da395178d21ef9bd | SHA-1 hash of /tmp/.z payload | 2026-09-06 | 2026-09-08 |
64.207.232[.]6:8443 | Command-and-control address | 2026-09-08 | 2026-09-08 |
svc_[a-zA-Z0-9]{8} | Suspicious attacker-created account pattern | — | — |
Nxploited_[a-zA-Z0-9]{3} | Suspicious attacker-created account pattern | — | — |
labadmin_[a-zA-Z0-9]{10} | Suspicious attacker-created account pattern | — | — |
jfrog-distribution | Malicious administrator account | — | — |
backup-service | Malicious administrator account | — | — |
repo-service | Malicious administrator account | — | — |
jfrog-insight | Malicious administrator account | — | — |
jfrog-mission-control | Malicious administrator account | — | — |
jfrog-pipeline | Malicious administrator account | — | — |
migration-tool | Malicious administrator account | — | — |
ldap_admin | Malicious administrator account | — | — |
ldap_administrator | Malicious administrator account | — | — |
0xterror | Malicious administrator account | — | — |
Note: IP addresses and domains are intentionally defanged (e.g., [.]) to prevent accidental resolution or hyperlinking. Re-fang only within controlled threat intelligence platforms such as MISP, VirusTotal, or your SIEM.
Keep your SOC up to date on active malware & phishing within 24h of their emergence. Try ANYRUN to prevent incidents with early detection.
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.
Text extracted automatically; images, tables and formatting may be missing. Original: https://gbhackers.com/hackers-exploit-jfrog-artifactory-flaws/