Výsledky hledání

výrobce: JFrog× v celém archivu zrušit filtry

12 karet z 14 položek CZ · EN/orig

1

JFrog: rilevato sfruttamento in rete delle vulnerabilità CVE-2026-42016 e CVE-2026-42018 in Artifactory

Rilevato lo sfruttamento attivo in rete di due vulnerabilità con gravità "alta" - già sanate dal vendor - relative al prodotto JFrog Artifactory, piattaforma per la gestione e distribuzione di artefatti software

KEV ✓ EPSS 0.01 CVE-2026-42016 CVE-2026-42018 JFrog IT

tg: zneužíváno tg: zranitelnost

· CSIRT Itálie (ACN) · JFrog: rilevato sfruttamento in rete delle vulnerabilità CVE-2026-42016 e CVE-2026-42018 in Artifactory

4

Artifactory flaws chained in attacks deploying backdoor malware

Threat actors are exploiting critical and high-severity vulnerabilities in JFrog Artifactory to bypass authentication, gain administrative privileges, and deploy a Rust backdoor on vulnerable self-hosted servers. [...]

KEV ✓ EPSS 0.08 CVE-2026-42016 CVE-2026-42018 CVE-2026-82329 JFrog US

tg: varování tg: zneužíváno tp: malware

· BleepingComputer · Artifactory flaws chained in attacks deploying backdoor malware

CISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-42016 JFrog Artifactory Incorrect Authorization Vulnerability CVE-2026-42018 JFrog Artifactory Improper Authentication Vulnerability CVE-2026-84869 ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant…

KEV ✓ EPSS 0.01 CVE-2026-42016 CVE-2026-42018 CVE-2026-84869 JFrog ConnectWise veřejná správa US

tg: zneužíváno tg: zranitelnost tg: regulace

· CISA Advisories · CISA Adds Three Known Exploited Vulnerabilities to Catalog

1

7th September – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 7th Setpember, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Thomson Reuters, a global information and technology company, has disclosed a breach of its C-Track court case-management platform affecting courts across 11 US states and Canada. An unauthorized party obtained C-Track files containing court records, including names and other personal information. Hit, a major Slovenian gambling and tourism…

KEV ✓ EPSS 0.09 CVSS 10.0 CVE-2026-82329 CVE-2026-83548 CVE-2026-83549 Thomson Reuters Dropbox SonicWall JFrog IL

tg: přehled tp: malware tp: ransomware tp: únik dat tp: AI

· Check Point Research · 7th September – Threat Intelligence Report

3

SPOJENO PŘES CVE Hackers exploit critical JFrog Artifactory flaw to forge admin tokens

A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create tokens that provide administrative access. [...]

KEV ✓ EPSS 0.08 CVE-2026-82329 JFrog US CA

tg: zneužíváno tg: zranitelnost tp: identita

· BleepingComputer · Hackers exploit critical JFrog Artifactory flaw to forge admin tokens · CISA KEV · JFrog Artifactory Improper Authentication Vulnerability (CVE-2026-82329) · Cyber Centre Kanada · JFrog security advisory (AV26-867)

CISA Adds Seven Known Exploited Vulnerabilities to Catalog

CISA has added seven new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-9586 Sangoma Switchvox SQL Injection Vulnerability CVE-2026-48710 Kludex Starlette HTTP Request/Response Smuggling Vulnerability CVE-2026-49869 Kestra OSS OS Command Injection Vulnerability CVE-2026-59822 BerriAI LiteLLM Improper Authentication Vulnerability CVE-2026-82329 JFrog Artifactory Improper Authentication Vulnerability CVE-2026-83548…

KEV ✓ EPSS 0.36 CVE-2026-48710 CVE-2026-49869 CVE-2026-59822 CVE-2026-82329 CVE-2026-83548 CVE-2026-83549 CVE-2026-9586 Sangoma JFrog SonicWall BerriAI veřejná správa US

tg: zneužíváno tg: zranitelnost

· CISA Advisories · CISA Adds Seven Known Exploited Vulnerabilities to Catalog

NCSC-2026-0336 [1.00] [M/H] Kwetsbaarheid verholpen in JFrog Artifactory

JFrog heeft een kwetsbaarheid verholpen in JFrog Artifactory. De kwetsbaarheid bevindt zich in de standaardconfiguratie van JFrog Artifactory, waarbij onvoldoende authenticatiecontroles aanwezig zijn. Hierdoor kan een niet-geauthenticeerde aanvaller met netwerktoegang de privileges escaleren naar administratief niveau. Dit kan leiden tot volledige administratieve controle over het systeem.

JFrog NL

tg: zranitelnost tp: identita

· NCSC-NL · NCSC-2026-0336 [1.00] [M/H] Kwetsbaarheid verholpen in JFrog Artifactory

1

Multiples vulnérabilités dans JFrog Artifactory (01 septembre 2026)

De multiples vulnérabilités ont été découvertes dans JFrog Artifactory. Elles permettent à un attaquant de provoquer une atteinte à la confidentialité des données, une falsification de requêtes côté serveur (SSRF) et un contournement de la politique de sécurité.

KEV ✓ EPSS 0.08 CVE-2026-69104 CVE-2026-70548 CVE-2026-70550 CVE-2026-70551 CVE-2026-82329 JFrog FR

tg: zranitelnost

· CERT-FR – avis · Multiples vulnérabilités dans JFrog Artifactory (01 septembre 2026)

2

CISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2023-49105 ownCloud Improper Authentication Vulnerability CVE-2026-53362 Linux Kernel Unspecified Vulnerability CVE-2026-66384 JFrog Artifactory Improper Limitation of a Pathname to a Restricted Directory Vulnerability These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risks to the federal enterprise…

KEV ✓ EPSS 0.43 CVE-2023-49105 CVE-2026-53362 CVE-2026-66384 ownCloud JFrog veřejná správa US

· CISA Advisories · CISA Adds Three Known Exploited Vulnerabilities to Catalog