JFrog's Artifactory used in the OpenAI hacking of Hugging Face
JFrog's Artifactory used in the OpenAI hacking of Hugging Face
Posted Aug 4, 2026 8:10 UTC (Tue) by ehiggs (subscriber, #90713)Parent article: SQLite Critical CVEs or LLM Slop? (JFrog blog)
I have to wonder if JFrog is putting out a blog article about CVEs and LLMs to try and pollute search results so it's harder to see the absolutely immense CVE where Artifactory was not validating tokens when the user requests a refresh token: https://app.opencve.io/cve/CVE-2026-65616
El Reg article here: https://www.theregister.com/security/2026/07/28/jfrogs-0-...
