Critical CVE-2026-82329 in JFrog Artifactory; possibly found by AI agents
kevinnbass · x · 2026-08-31
JFrog released CVE-2026-82329, a critical authentication bypass vulnerability in Artifactory with a CVSS score of 9.8. It affects default configurations, requires no auth, and can lead to RCE. The author speculates this might be the "zero-day discovered by agents" mentioned by OpenAI/Hugging Face, though no official confirmation exists yet.
More from Safety
- Paper: Long-Horizon Agent Safety Cannot Be Reduced to Short-Term Checks — rohanpaul_ai · 2026-08-31
- AI fine-tuned on author style evades detection, raising copyright concerns — TuhinChakr · 2026-08-31
- AI shopping agent wins legal test; court rules user指令 implies user access — PuzzledBag931 · 2026-08-31
- Industry split: Software fears AI doom, Hardware ignores it — jwt0625 · 2026-08-31
- StepGuard: Step-Level Guardrails with Safety-Utility Balancing for Agents — AI45Research · 2026-08-31
- Geoffrey Irving: Internal Misjudgment on Why OpenAI Disabled CoT Monitoring — geoffreyirving · 2026-08-31