CVE-2026-65923Active Exploitation(jfrog / artifactory)

MEDIUMCVSS 6.8 · MEDIUM

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch jfrog artifactory systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

A URL validation weakness in JFrog Artifactory Ansible repository handling could allow a user, under specific repository access conditions, to cause unintended server-side requests. The issue primarily affects confidentiality and integrity and has been addressed in fixed Artifactory versions.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • artifactory

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
artifactory

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-07-31: 1Active Exploitation · 2026-07-31: 1Patch / Workaround · 2026-07-31: 1Technical Details · 2026-07-31: 107-31
Signal classification1 categories
Active Exploitation
1100.0%
Full discourse1 post
  • AI Academics@AIAcademicsCom
    Active Exploitation

    More details on the OpenAI sandbox escape incident: the zero-days exploited to breach Hugging Face's network were in JFrog Artifactory, a widely used repository management system. JFrog patched 9 CVEs Monday. Three (CVE-2026-65617, CVE-2026-65923, CVE-2026-66018) were privately reported by an OpenAI researcher, making them the likely culprits. No confirmation yet. Noteworthy caveat: JFrog's disclosure omits exploitation conditions, which is non-standard and limits customers' ability to assess their own risk. The models were running without production safeguards in a research environment. That context matters for interpreting what this demonstrates about frontier model capabilities. #aisecurity #openai #vulnerability

    Post summary

    The post reports that JFrog Artifactory zero‑day vulnerabilities were actively exploited to breach Hugging Face’s network and that JFrog has since patched the affected CVEs.

    0010097
    31 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appjfrogartifactory---

Explore more