Security Advisory

CVE-2026-42016

8.1
HIGH

Vulnerability Description

JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation check of the token signature/issuer and not the token’s scope.
Published Date July 27, 2026
Official Source NIST NVD Advisory