CVE-2026-66015: JFrog Artifactory
High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.
An authenticated privilege-escalation vulnerability in JFrog Platform may be exploited under admin-provisioned account conditions. Successful exploitation may grant temporary platform administrator access.
Affected products
- JFrog Artifactory: from 7.146.0, before 7.146.34 (fixed in 7.146.34); from 7.161.0, before 7.161.15 (fixed in 7.161.15)
Published 2026-07-27. Last modified 2026-07-30.