VendorsSonatypenexus_repository_managerall versions
Vulnerabilities

Sonatype Nexus Repository Manager

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

63CVEs
CVE-2017-17717
Sonatype Nexus Repository Manager through 2.14.5 has weak password encryption with a hardcoded CMMDwoV value in the LDAP integration feature.
Published 2017-12-17 · Modified
10.0EPSS 0.007
CVE-2019-7238
Sonatype Nexus Repository Manager before 3.15.0 has Incorrect Access Control.
Published 2019-03-21 · Analyzed
9.8KEVEPSS 0.771
CVE-2019-9629
Sonatype Nexus Repository Manager before 3.17.0 establishes a default administrator user with weak defaults (fixed credentials).
Published 2019-07-08 · Modified
9.8EPSS 0.015
CVE-2026-5189
Nexus Repository 3 - Hardcoded Credential in Internal Database Component
Published 2026-04-15 · Analyzed
9.8EPSS 0.006
CVE-2026-3199
Nexus Repository 3 - Authenticated Remote Code Execution via Task Property Injection
Published 2026-04-08 · Analyzed
9.4EPSS 0.008
CVE-2019-5475
The Nexus Yum Repository Plugin in v2 is vulnerable to Remote Code Execution when instances using CommandLineExecutor.java are supplied vulnerable data, such as the Yum Configuration Capability.
Published 2019-09-03 · Modified
9.0EPSS 0.184
CVE-2019-15588
There is an OS Command Injection in Nexus Repository Manager <= 2.14.14 (bypass CVE-2019-5475) that could allow an attacker a Remote Code Execution (RCE). All instances using CommandLineExecutor.java with user-supplied data is vulnerable, such as the Yum Configuration Capability.
Published 2019-11-01 · Modified
9.0EPSS 0.056
CVE-2019-16530
Sonatype Nexus Repository Manager 2.x before 2.14.15 and 3.x before 3.19, and IQ Server before 72, has remote code execution.
Published 2019-10-21 · Modified
9.0EPSS 0.033
CVE-2026-17601
Nexus Repository 3 - Wildcard Privilege Update Self-Escalation to Administrator
Published 2026-08-07 · Analyzed
8.9EPSS 0.003
CVE-2020-15871
Sonatype Nexus Repository Manager OSS/Pro version before 3.25.1 allows Remote Code Execution.
Published 2020-07-31 · Analyzed
8.8EPSS 0.022
CVE-2020-11753
An issue was discovered in Sonatype Nexus Repository Manager in versions 3.21.1 and 3.22.0. It is possible for a user with appropriate privileges to create, modify, and execute scripting tasks without use of the UI or API. NOTE: in 3.22.0, scripting is disabled by default (making this not exploitable).
Published 2020-04-20 · Analyzed
8.8EPSS 0.017
CVE-2026-17603
Nexus Repository 3 - HikariCP connectionInitSql Injection RCE via DataStore Configuration API
Published 2026-08-07 · Analyzed
8.8EPSS 0.005
CVE-2026-17600
Nexus Repository 3 - Session Not Invalidated on User Account Deletion or Deactivation
Published 2026-08-07 · Analyzed
8.8EPSS 0.002
CVE-2026-3329
Nexus Repository Manager - Improper Restriction of Excessive Authentication Attempts
Published 2026-06-11 · Analyzed
8.7EPSS 0.006
CVE-2026-11403
Nexus Repository Manager - Insufficient Entropy in Format-Specific API Key Generation
Published 2026-07-14 · Analyzed
8.7EPSS 0.003
CVE-2020-15012
A Directory Traversal issue was discovered in Sonatype Nexus Repository Manager 2.x before 2.14.19. A user that requests a crafted path can traverse up the file system to get access to content on disk (that the user running nxrm also has access to).
Published 2020-10-12 · Modified
8.6EPSS 0.026
CVE-2026-14644
Nexus Repository 3 - Privilege Escalation
Published 2026-08-07 · Analyzed
8.6EPSS 0.003
CVE-2026-10748
Nexus Repository 3 - Remote Code Execution via License Deserialization
Published 2026-06-16 · Analyzed
8.6EPSS 0.003
CVE-2021-40143
Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.
Published 2021-09-07 · Analyzed
8.2EPSS 0.023
CVE-2026-17594
Nexus Repository 3 - Authorization Bypass in Repository Creation
Published 2026-08-07 · Analyzed
8.2EPSS 0.007
CVE-2026-14504
Nexus Repository 3 - Authorization Bypass in Component Upload API
Published 2026-07-14 · Analyzed
8.2EPSS 0.002
CVE-2026-14646
Nexus Repository 3 - Server-Side Request Forgery (SSRF) via HTTP Redirect
Published 2026-07-14 · Analyzed
7.7EPSS 0.003
CVE-2019-9630
Sonatype Nexus Repository Manager before 3.17.0 has a weak default of giving any unauthenticated user read permissions on the repository files and images.
Published 2019-07-08 · Modified
7.5EPSS 0.014
CVE-2020-15868
Sonatype Nexus Repository Manager OSS/Pro before 3.26.0 has Incorrect Access Control.
Published 2020-08-12 · Modified
7.5EPSS 0.011
CVE-2018-16620
Sonatype Nexus Repository Manager before 3.14 has Incorrect Access Control.
Published 2018-11-15 · Modified
7.5EPSS 0.011
CVE-2026-77124
Nexus Repository 3 - Script Execution Disable Setting Not Enforced
Published 2026-09-02 · Analyzed
7.5EPSS 0.006
CVE-2018-16621
Sonatype Nexus Repository Manager before 3.14 allows Java Expression Language Injection.
Published 2018-11-15 · Modified
7.2EPSS 0.052
CVE-2019-15893
Sonatype Nexus Repository Manager 2.x before 2.14.15 allows Remote Code Execution.
Published 2019-10-16 · Modified
7.2EPSS 0.021
CVE-2026-17593
Nexus Repository - Arbitrary Class Instantiation via Unsafe Realm Configuration
Published 2026-08-07 · Analyzed
7.2EPSS 0.008
CVE-2026-17599
Nexus Repository 3 - Unverified Onboarding State on change-admin-password Endpoint
Published 2026-08-07 · Analyzed
7.2EPSS 0.003
CVE-2026-77125
Nexus Repository 3 - Incorrect Authorization on Blobstore Group Endpoints
Published 2026-09-02 · Analyzed
7.1EPSS 0.003
CVE-2020-29436
Sonatype Nexus Repository Manager 3.x before 3.29.0 allows a user with admin privileges to configure the system to gain access to content outside of NXRM via an XXE vulnerability. Fixed in version 3.29.0.
Published 2020-12-17 · Modified
6.5EPSS 0.015
CVE-2026-77123
Nexus Repository 3 - Webhook Secret Disclosure via Capability Read API
Published 2026-09-02 · Analyzed
6.5EPSS 0.005
CVE-2024-5764
Nexus Repository 3 - Static hard-coded encryption passphrase used by default
Published 2024-10-23 · Analyzed
6.5EPSS 0.004
CVE-2026-17596
Nexus Repository 3 - Stored Cross-Site Scripting (XSS) via Blob Store Name
Published 2026-08-07 · Analyzed
6.3EPSS 0.002
CVE-2018-5307
Multiple cross-site scripting (XSS) vulnerabilities in Sonatype Nexus Repository Manager (aka NXRM) 2.x before 2.14.6 allow remote attackers to inject arbitrary web script or HTML via (1) the repoId or (2) format parameter to service/siesta/healthcheck/healthCheckFileDetail/.../index.html; (3) the filename in the "File Upload" functionality of the Staging Upload; (4) the username when creating a new user; or (5) the IQ Server URL field in the IQ Server Connection functionality.
Published 2018-02-09 · Modified
6.1EPSS 0.012
CVE-2018-5306
Multiple cross-site scripting (XSS) vulnerabilities in Sonatype Nexus Repository Manager (aka NXRM) 3.x before 3.8 allow remote attackers to inject arbitrary web script or HTML via (1) the repoId or (2) format parameter to service/siesta/healthcheck/healthCheckFileDetail/.../index.html; (3) the filename in the "File Upload" functionality of the Staging Upload; (4) the username when creating a new user; or (5) the IQ Server URL field in the IQ Server Connection functionality.
Published 2018-02-09 · Modified
6.1EPSS 0.011
CVE-2019-11629
Sonatype Nexus Repository Manager 2.x before 2.14.13 allows XSS.
Published 2019-05-07 · Modified
6.1EPSS 0.007
CVE-2018-16619
Sonatype Nexus Repository Manager before 3.14 allows XSS.
Published 2018-11-15 · Modified
6.1EPSS 0.007
CVE-2020-15870
Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (Issue 2 of 2).
Published 2020-07-31 · Analyzed
6.1EPSS 0.007
1 / 2Next →