Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-42018

JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 58.3%
CVSS Severity
CVSS v3 Score 7.5
Proposed Action
JFrog Artifactory contains an improper authentication vulnerability that could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.
Ransomware Campaign
Unknown
Products affected by CVE-2026-42018


Contact Us

Shodan ® - All rights reserved