Help Net Security reports that OpenInfra Europe, the regional hub of the Linux Foundation’s OpenInfra Foundation, disclosed that a self-hosted JFrog Artifactory instance at artifactory.nordix.org was compromised and warned anyone who downloaded or installed artifacts there between August 28 and September 15, 2026 to stop using them, remove them from pipelines, and treat them as potentially compromised. Attackers are said to have exploited CVE-2026-82329, an authentication bypass in a vulnerable Artifactory version, to gain admin access and tamper with artifacts, credentials, and integrations; in-the-wild exploitation began August 31, the breach was discovered September 15 when a legitimate user was denied access, and OpenInfra Europe says the full scope is still undetermined.
OpenInfra Europe's JFrog Artifactory instance breached, packages potentially compromised
Help Net Security reports that OpenInfra Europe, the regional hub of the Linux Foundation's OpenInfra Foundation, disclosed that a self-hosted JFrog Artifactory instance at artifactory.nordix.org was compromised and warned anyone who downloaded or installed artifacts there between August 28 and September 15, 2026 to stop using them, remove them from pipelines, and treat them as potentially compromised. Attackers are said to have exploited CVE-2026-82329, an authentication bypass in a vulnerable Artifactory version, to gain admin access and tamper with artifacts, credentials, and integrations; in-the-wild exploitation began August 31, the breach was discovered September 15 when a legitimate user was denied access, and OpenInfra Europe says the full scope is still undetermined.
Source: Helpnetsecurity