The Artifact Repository Is a Trust Root: Reading the JFrog Artifactory Authentication Bypass Most organizations do not think of their artifact repository as a security boundary. It is where build outputs go, and where dependencies come from. When an attacker takes it over, both directions of that pipeline become hostile at once. The vulnerability CVE-2026-82329 is an authentication bypass in self-hosted JFrog Artifactory, rated CVSS 9.8. JFrog published a fix on August 28, 20...