Skip to content
InfoQ·

🚨Artifactory Zero-Day Exploits Enable Admin Access in 5 Minutes

Artifactory Zero-Days: Admin Access in 5 Minutes

TL;DR

Three Artifactory vulnerabilities are actively exploited, allowing attackers to bypass authentication and gain admin access in under five minutes. CVE-2026-42018, CVE-2026-42016, and CVE-2026-82329 enable credential theft, code execution, and anti-forensics measures. Patch immediately to versions 7.111.21 or newer.

Three Artifactory vulnerabilities are actively exploited, enabling attackers to bypass authentication and gain admin access in under five minutes. These exploits can lead to credential theft, code execution, and anti-forensics measures. If you're using Artifactory, this is a critical security issue. The vulnerabilities are CVE-2026-42018, CVE-2026-42016, and CVE-2026-82329. Affected systems should be patched to versions 7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, 7.161.20, or newer. Immediate action is required to prevent exploitation.

Artifactory Zero-Day Exploits Enable Admin Access in 5 Minutes — InfoQ

Key Points

1

CVE-2026-42018: Returns an internal anonymous-user token to an unauthenticated requester, even when anonymous access is disabled.

2

CVE-2026-42016: Fails to validate a request's token, allowing low-privileged attackers to perform unauthorized actions and gain elevated privileges.

3

CVE-2026-82329: Allows an unauthenticated attacker to obtain administrative control.

4

Exploits follow a similar pattern: POST request returns HTTP 200 with a JWT for the internal anonymous user, then exchanged for an admin-scoped token.

5

Patched versions: 7.111.21, 7.117.28, 7.125.20, 7.133.29, 7.146.38, 7.161.20, or newer depending on the deployed release branch.

Why It Matters

If you're using Artifactory, these vulnerabilities can be exploited to gain admin access in under five minutes, enabling credential theft, code execution, and anti-forensics measures. Affected systems should be patched to versions 7.111.21 or newer to prevent exploitation. Immediate action is critical to maintain security.

artifactoryvulnerabilitiesexploitssecuritypatch

Comments

Subscribe to join the conversation...

Be the first to comment

Enjoyed this article?

Get it daily. 7am. Free. Reads in 5 minutes.

Join 3,549 builders reading daily.

Also get