VYPR
High severity7.2OSV Advisory· Published Nov 15, 2018· Updated Jun 17, 2026

CVE-2018-16621

CVE-2018-16621

Description

Sonatype Nexus Repository Manager before 3.14 allows Java Expression Language Injection.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Range: release-3.3.0-01, release-3.4.0-02, release-3.5.0-02
  • cpe:2.3:a:sonatype:nexus_repository_manager:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:sonatype:nexus_repository_manager:*:*:*:*:*:*:*:*range: <3.14.0
    • (no CPE)range: <3.14

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.