CVE-2026-69107: JFrog Artifactory

Medium severity, CVSS 5.9. EPSS: 0.4% chance of exploitation in the next 30 days.

An unauthenticated user may access restricted artifacts in JFrog Artifactory under specific conditions.

Affected products

  • JFrog Artifactory: before 7.104.16 (fixed in 7.104.16); from 7.111.0, before 7.111.14 (fixed in 7.111.14); from 7.117.0, before 7.117.21 (fixed in 7.117.21); from 7.125.0, before 7.125.14 (fixed in 7.125.14); from 7.133.0, before 7.133.21 (fixed in 7.133.21); from 7.146.0, before 7.146.8 (fixed in 7.146.8)

Published 2026-08-12. Last modified 2026-09-11.