VYPR

Vendor CVEs

Sonatype

All CVEs

83 total · sorted by risk
  • CVE-2018-5306MedFeb 9, 2018
    risk 0.40cvss 6.1epss 0.01

    Multiple cross-site scripting (XSS) vulnerabilities in Sonatype Nexus Repository Manager (aka NXRM) 3.x before 3.8 allow remote attackers to inject arbitrary web script or HTML via (1) the repoId or (2) format parameter to service/siesta/healthcheck/healthCheckFileDetail/.../inde…

  • CVE-2021-37152MedAug 10, 2021
    risk 0.37cvss 5.4epss 0.24

    Multiple XSS issues exist in Sonatype Nexus Repository Manager 3 before 3.33.0. An authenticated attacker with the ability to add HTML files to a repository could redirect users to Nexus Repository Manager’s pages with code modifications.

  • CVE-2026-14645MedJul 14, 2026
    risk 0.36cvss 5.5epss 0.01

    Nexus Repository 3 does not validate the destination of the "Webhook: Global" capability's configured URL before making an outbound HTTP request, allowing a user holding the Capability Administration permission to cause the server to send requests to internal network locations…

  • CVE-2026-7308MedMay 11, 2026
    risk 0.35cvss 5.4epss 0.00

    An authenticated user with upload permission to a hosted repository can store content that causes arbitrary JavaScript to execute in the browser of any user who browses that repository directory via the HTML index page in Sonatype Nexus Repository versions 3.6.0 through versions…

  • CVE-2024-1142MedMar 21, 2024
    risk 0.35cvss 5.4epss 0.01

    Path Traversal in Sonatype IQ Server from version 143 allows remote authenticated attackers to overwrite or delete files via a specially crafted request. Version 171 fixes this issue.

  • CVE-2021-30635MedApr 27, 2021
    risk 0.35cvss 5.3epss 0.02

    Sonatype Nexus Repository Manager 3.x before 3.30.1 allows a remote attacker to get a list of files and directories that exist in a UI-related folder via directory traversal (no customer-specific data is exposed).

  • CVE-2020-15869MedJul 31, 2020
    risk 0.35cvss 5.4epss 0.01

    Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (issue 1 of 2).

  • CVE-2019-14469MedAug 22, 2019
    risk 0.35cvss 5.4epss 0.01

    In Nexus Repository Manager before 3.18.0, users with elevated privileges can create stored XSS.

  • CVE-2026-77121MedSep 2, 2026
    risk 0.34cvss —epss 0.00

    A user account with permission to deploy artifacts to a hosted Maven repository could upload a POM file containing an oversized metadata field. This causes future attempts to list or browse that repository's components to permanently fail until an administrator repairs the…

  • CVE-2026-7494MedJul 14, 2026
    risk 0.33cvss 5.0epss 0.00

    Nexus Repository 3 is vulnerable to Server-Side Request Forgery (SSRF) via the SSL Certificate Retrieval endpoint. A user holding the nexus:ssl-truststore:read permission could cause the server to initiate outbound connections to internal or otherwise restricted network hosts.…

  • CVE-2026-0601MedJan 14, 2026
    risk 0.33cvss —epss 0.00

    A reflected cross-site scripting vulnerability exists in Nexus Repository 3 that allows unauthenticated attackers to execute arbitrary JavaScript in a victim's browser through a specially crafted request requiring user interaction.

  • CVE-2025-13488MedDec 4, 2025
    risk 0.33cvss —epss 0.00

    Due to a regression introduced in version 3.83.0, a security header is no longer applied to certain user-uploaded content served from repositories. This may allow an authenticated attacker with repository upload privileges to exploit a stored cross-site scripting (XSS)…

  • CVE-2024-5083MedNov 14, 2024
    risk 0.33cvss —epss 0.00

    A stored Cross-site Scripting vulnerability has been discovered in Sonatype Nexus Repository 2 This issue affects Nexus Repository 2 OSS/Pro versions up to and including 2.15.1.

  • CVE-2026-17598MedAug 7, 2026
    risk 0.32cvss 4.9epss 0.00

    Sonatype Nexus Repository 3 did not properly filter internal configuration keys from user-supplied task properties when creating or updating a scheduled task through the administrative UI. An account holding permission to create at least one scheduled task type could supply a…

  • CVE-2026-17594MedAug 7, 2026
    risk 0.32cvss 4.9epss 0.01

    Nexus Repository 3 CE/Pro versions 3.0.0 through 3.94.x contain an incorrect authorization vulnerability (CWE-863) in the repository-creation user interface. An individual user account holding a delegated repository-admin privilege scoped to a specific repository format could…

  • CVE-2026-10741MedJun 17, 2026
    risk 0.32cvss 4.9epss 0.00

    Sonatype Nexus Repository Manager before 3.93.0 contains an authorization vulnerability in the proxy repository configuration that allows a delegated repository administrator to disclose stored upstream proxy credentials.

  • CVE-2021-29158MedApr 23, 2021
    risk 0.32cvss 4.9epss 0.01

    Sonatype Nexus Repository Manager 3 Pro up to and including 3.30.0 has Incorrect Access Control.

  • CVE-2020-24622MedAug 25, 2020
    risk 0.32cvss 4.9epss 0.01

    In Sonatype Nexus Repository 3.26.1, an S3 secret key can be exposed by an admin user.

  • CVE-2020-11415MedApr 27, 2020
    risk 0.32cvss 4.9epss 0.01

    An issue was discovered in Sonatype Nexus Repository Manager 2.x before 2.14.17 and 3.x before 3.22.1. Admin users can retrieve the LDAP server system username/password (as configured in nxrm) in cleartext.

  • CVE-2020-10203MedApr 1, 2020
    risk 0.31cvss 4.8epss 0.01

    Sonatype Nexus Repository before 3.21.2 allows XSS.

  • CVE-2018-12100MedJun 11, 2018
    risk 0.31cvss 4.8epss 0.01

    Sonatype Nexus Repository Manager versions 3.x before 3.12.0 has XSS in multiple areas in the Administration UI.

  • CVE-2026-77122MedSep 2, 2026
    risk 0.28cvss 4.3epss 0.00

    An authorization flaw in the REST API repository details endpoint (GET /service/rest/v1/repositories/{repositoryName}) in Sonatype Nexus Repository 3 allowed an account holding read or browse permission on a group repository to retrieve metadata for member repositories on which…

  • CVE-2022-27907MedMar 30, 2022
    risk 0.28cvss 4.3epss 0.01

    Sonatype Nexus Repository Manager 3.x before 3.38.0 allows SSRF.

  • CVE-2021-43961MedMar 17, 2022
    risk 0.28cvss 4.3epss 0.01

    Sonatype Nexus Repository Manager 3.36.0 allows HTML Injection.

  • CVE-2021-43293MedNov 4, 2021
    risk 0.28cvss 4.3epss 0.01

    Sonatype Nexus Repository Manager 3.x before 3.36.0 allows a remote authenticated attacker to potentially perform network enumeration via Server Side Request Forgery (SSRF).

  • CVE-2021-42568MedNov 2, 2021
    risk 0.28cvss 4.3epss 0.00

    Sonatype Nexus Repository Manager 3.x through 3.35.0 allows attackers to access the SSL Certificates Loading function via a low-privileged account.

  • CVE-2021-34553MedJun 18, 2021
    risk 0.28cvss 4.3epss 0.04

    Sonatype Nexus Repository Manager 3.x before 3.31.0 allows a remote authenticated attacker to get a list of blob files and read the content of a blob file (via a GET request) without having been granted access.

  • CVE-2026-3048LowMay 11, 2026
    risk 0.25cvss 3.8epss 0.00

    An authenticated administrator who configures or tests LDAP connectivity in Sonatype Nexus Repository Manager versions 3.0.0 through 3.91.1 may be able to initiate unintended server-side connections when interacting with a malicious LDAP server.

  • CVE-2026-17597LowAug 7, 2026
    risk 0.18cvss 2.7epss 0.00

    Nexus Repository 3 contains a Server-Side Request Forgery (SSRF) vulnerability in the email configuration verification feature. A user holding the nexus:settings:update permission could submit arbitrary host and port values to the email test/verification endpoint, causing the…

  • CVE-2026-17595LowAug 7, 2026
    risk 0.18cvss 2.7epss 0.00

    Nexus Repository 3 did not fully sandbox JEXL expressions used in Content Selectors. An account holding the nexus:selectors:create permission could construct an expression that read Java object properties not intended to be exposed to the expression engine, disclosing internal…

  • CVE-2014-9389Jan 5, 2015
    risk 0.00cvss —epss 0.02

    Directory traversal vulnerability in Sonatype Nexus OSS and Pro before 2.11.1-01 allows remote attackers to read or write to arbitrary files via unspecified vectors.

  • CVE-2014-2034Apr 1, 2014
    risk 0.00cvss —epss 0.02

    Unspecified vulnerability in Sonatype Nexus OSS and Pro 2.4.0 through 2.7.1 allows attackers to create arbitrary user accounts via unknown vectors related to "an unauthenticated execution path."

  • CVE-2014-0792Jan 17, 2014
    risk 0.00cvss —epss 0.03

    Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers to create arbitrary objects and execute arbitrary code via unspecified vectors related to unmarshalling of unintended Object types.

Page 2 of 2