CVE-2026-66015: JFrog Artifactory

High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.

An authenticated privilege-escalation vulnerability in JFrog Platform may be exploited under admin-provisioned account conditions. Successful exploitation may grant temporary platform administrator access.

Affected products

  • JFrog Artifactory: from 7.146.0, before 7.146.34 (fixed in 7.146.34); from 7.161.0, before 7.161.15 (fixed in 7.161.15)

Published 2026-07-27. Last modified 2026-07-30.