CVE-2026-66014: exploitation status and patch state
CVE-2026-66014 · CVSS 8.8 HIGH · EPSS <1%
JFrog Artifactory contains an authentication handling weakness in internal request processing that, under specific conditions, may allow an attacker to escalate privileges beyond the intended access level.
Is CVE-2026-66014 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at <1%.
Public exploit code: none found in monitored sources.