CVE-2026-42018
HIGH
CVSS: 7.5
EPSS: 0.3%
VulnCheck KEV
PoC Available
CWE-287
T1078
JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.
Published: 2026-08-12
Mentioned in 1 article(s):