Artifactory Vulnerabilities Under Active Exploitation Enable Authentication Bypass and Admin Access
Three Artifactory vulnerabilities under active exploitation—enabling admin access in under five minutes on self-hosted instances. If you run it on the internet, patch now.

Why it matters
Critical infrastructure vulnerability hitting artifact repositories used across enterprise DevOps and CI/CD pipelines. Active exploitation means this is not theoretical; enterprises with internet-facing Artifactory deployments face immediate risk of credential theft, code injection, and persistence.
The key facts
11 to knowThree Artifactory vulnerabilities confirmed under active exploitation
Authentication bypass enabling administrator access in under five minutes
Affects self-hosted, Internet-accessible Artifactory deployments
Post-compromise risks: credential theft, arbitrary code execution, persistence, anti-forensics
Reported by Sergio De Simone, InfoQ, 28 September 2026
Three vulnerabilities under active exploitation
Self-hosted Artifactory deployments affected
Internet-accessible instances vulnerable
Admin access achievable in under five minutes
Enables credential and key theft, arbitrary code execution, persistence, anti-forensics
Authentication bypass is the attack vector
Go to the source
InfoQ AI/MLinfoq.com
Publisher excerpt: Three Artifactory vulnerabilities under active exploitation enable authentication bypassing on Internet-accessible, self-hosted deployments, potentially allowing attackers to establish persistent administrator access in under five minutes. The exploits then enable dangerous activity, including…