No more typing reviews! Try our Samantha, our new voice AI agent.
JFrog Xray Logo

JFrog Xray Reviews

Vendor: JFrog
3.9 out of 5
Badge Leader

What is JFrog Xray?

Get the report
Helped 900,644 peers since 2012

Featured JFrog Xray reviews

JFrog Xray mindshare

As of June 2026, the mindshare of JFrog Xray in the Vulnerability Management category stands at 1.3%, down from 1.6% compared to the previous year, according to calculations based on PeerSpot user engagement data.
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
JFrog Xray1.3%
Wiz4.5%
Qualys VMDR3.9%
Other90.3%
Vulnerability Management

PeerResearch reports based on JFrog Xray reviews

TypeTitleDate
CategoryVulnerability ManagementJun 23, 2026Download
ProductReviews, tips, and advice from real usersJun 23, 2026Download
ComparisonJFrog Xray vs WizJun 23, 2026Download
ComparisonJFrog Xray vs Tenable NessusJun 23, 2026Download
ComparisonJFrog Xray vs Qualys VMDRJun 23, 2026Download
Suggested products
TitleRatingMindshareRecommending
Wiz4.44.5%97%47 interviewsAdd to research
SentinelOne Singularity Cloud Security4.42.5%99%129 interviewsAdd to research
 
 
Key learnings from peers

Valuable Features

Room for Improvement

ROI

Pricing

Popular Use Cases

Service and Support

Deployment

Scalability

Stability

Review data by company size

By reviewers
Company SizeCount
Small Business1
Midsize Enterprise2
Large Enterprise4
By reviewers
By visitors reading reviews
Company SizeCount
Small Business260
Midsize Enterprise145
Large Enterprise1019
By visitors reading reviews

Top industries

By visitors reading reviews
Financial Services Firm
25%
Manufacturing Company
11%
Computer Software Company
8%
Government
5%
University
5%
Healthcare Company
4%
Insurance Company
4%
Retailer
4%
Comms Service Provider
4%
Outsourcing Company
3%
Energy/Utilities Company
3%
Aerospace/Defense Firm
3%
Construction Company
2%
Media Company
2%
Educational Organization
2%
Transportation Company
2%
Real Estate/Law Firm
1%
Logistics Company
1%
Consumer Goods Company
1%
Performing Arts
1%
Hospitality Company
1%
Wholesaler/Distributor
1%
Pharma/Biotech Company
1%
Non Profit
1%
Marketing Services Firm
1%
Recreational Facilities/Services Company
1%
Leisure / Travel Company
1%

Compare JFrog Xray with alternative products

Learn more about JFrog Xray

JFrog Xray customers

Related questions

 
JFrog Xray Reviews Summary
Author infoRatingReview Summary
DevOps Engineer at Syvora3.5I use JFrog Xray to manage and secure packages and images across repositories. It's scalable, supports various technologies, and integrates well with CI/CD. While the UI needs improvement, overall, it reliably meets my deployment and security needs.
DevSecOps Engineer at a tech services company with 501-1,000 employees3.0I've used JFrog Xray for three years and appreciate its deep scanning and policy-based security, but the UI, documentation, and CI/CD integration need improvement. It's effective overall, though setup was challenging, and support has been solid.
Development Senior at a financial services firm with 5,001-10,000 employees3.5We use JFrog Xray for security and vulnerability scanning, valuing its integration with Artifactory and curation capabilities. Improvement is needed in database support and troubleshooting. We're evaluating its potential to replace Black Duck for operational efficiency.
Deployment Coordinator at a government with 10,001+ employees4.0We use JFrog Xray to identify vulnerabilities in dependency files through its integration with Artifactory. It provides essential security by scanning artifacts for vulnerabilities. However, the tool needs improved reporting capabilities for more specific data points in reports.
DevOps Engineer at Rambøll Danmark A/S4.0We primarily use JFrog Xray for container scanning, appreciating its integration with Artifactory for easy project onboarding. While Xray efficiently prioritizes vulnerabilities, it lacks a dashboard and a shift-left approach, and we face a project limitation despite being premium customers.
DevOps Engineer Intern at University of Nebraska at Omaha4.0I use JFrog Xray to run daily and monthly vulnerability reports for Artifactory. Its scanning capabilities are comprehensive, even detecting vulnerabilities in docker files, although its documentation and error logging need improvement. We switched from SonarQube and Checkmarx to JFrog's add-on.
SR IT administrator at Cardinal Integrated Technologies Inc4.5I use JFrog Xray to identify vulnerabilities, finding its internal dependencies hierarchy display very valuable. However, I feel its speed lags behind competitors like Nexus, and improvements in vulnerability management and user interface are needed.
Lead Vulnerability Analyst/ DevSec Ops Specialist at a government with 201-500 employees4.0I primarily use JFrog Xray for artifact storage, repository, and image management, along with vulnerability scans. The watch policies and blocking vulnerabilities are valuable, but the user interface and site performance need improvement for a better user experience.
Senior Manager at a comms service provider with 5,001-10,000 employees4.0We primarily use JFrog Xray for vulnerability scanning of open-source components, finding it reliable and easy to set up with clear reporting. Despite some API limitations, we switched from Sonatype for better synergy with existing JFrog solutions.
DevOps Engineer Intern at University of Nebraska at Omaha4.0I use this solution for scanning Jfrog Artifactory artifacts, appreciating its good reporting and policy watches. However, I wish for deeper reporting with comparison categories and improved documentation, as current reporting is basic.
Anand Nanwana - PeerSpot reviewer
Anand Nanwana
DevOps Engineer at Syvora
Aug 21, 2025
Offers flexibility across clouds and easy credential management while interface improvements are needed
reviewer2757060 - PeerSpot reviewer
reviewer2757060
DevSecOps Engineer at a tech services company with 501-1,000 employees
Sep 12, 2025
Has supported compliance and threat detection but suffers from poor user experience and CI integration
VB
Vinod Bhupathiraju
Development Senior at a financial services firm with 5,001-10,000 employees
Nov 19, 2024
Curation capabilities impress and good vulnerability scanning but multi-database support needed
HS
Hari Sait
Deployment Coordinator at a government with 10,001+ employees
Feb 21, 2024
A stable solution to identify vulnerabilities with embedded rules
Mokshi Pandita - PeerSpot reviewer
Mokshi Pandita
DevOps Engineer at Rambøll Danmark A/S
Jun 1, 2023
An intelligent solution that prioritizes which vulnerability to target first in your project
Sai Pradeep Koneti - PeerSpot reviewer
Sai Pradeep Koneti
DevOps Engineer Intern at University of Nebraska at Omaha
Jun 12, 2023
Goes deep into the docker files and find out vulnerabilities
Narendra-Singh - PeerSpot reviewer
Narendra-Singh
SR IT administrator at Cardinal Integrated Technologies Inc
Mar 31, 2023
Useful dependencies hierarchy view and scales well
reviewer2124318 - PeerSpot reviewer
reviewer2124318
Lead Vulnerability Analyst/ DevSec Ops Specialist at a government with 201-500 employees
Mar 10, 2023
Solid watch policies; blocks vulnerabilities well
reviewer1646469 - PeerSpot reviewer
reviewer1646469
Senior Manager at a comms service provider with 5,001-10,000 employees
Mar 15, 2023
Reasonably priced with good scanning and reporting capabilities
Sai Pradeep Koneti - PeerSpot reviewer
Sai Pradeep Koneti
DevOps Engineer Intern at University of Nebraska at Omaha
Jun 15, 2021
Stable, scalable and offers great reporting functionalities