EUVD Vulnerability Catalog
Actively Exploited (KEV)
EUVD-2026-67861
Severity: CRITICAL
Base Score: 9.8
CVSS Version: 3.1
Vulnerability Description
JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.
CVSS Vector Analysis
Below is the complete, human-readable breakdown of the CVSS metric string: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
▪
Attack Vector (AV): Network
▪
Attack Complexity (AC): Low
▪
Privileges Required (PR): None
▪
User Interaction (UI): None
▪
Scope (S): Unchanged
▪
Confidentiality Impact (C): High
▪
Integrity Impact (I): High
▪
Availability Impact (A): High
Affected Vendors & Systems
Vendor
JFrog
References & Advisory Links
Metadata Profile
Database Authority
European Union Agency for Cybersecurity (ENISA) EUVD
Assigner
JFROG
EPSS Probability
0.38
Known Aliases
CVE-2026-82329
GHSA-c5pf-6p5j-gj87
Published On
2026-08-28
Last Updated
2026-09-02
Exploited Since
2026-09-02