Sonatype Nexus Repository Manager before 3.93.0 contains an authorization vulnerability in the proxy repository configuration that allows a delegated repository administrator to disclose stored upstream proxy credentials.
References
| Link | Resource |
|---|---|
| https://help.sonatype.com/en/sonatype-nexus-repository-3-93-0-release-notes.html | Vendor Advisory |
| https://support.sonatype.com/hc/en-us/articles/52341191736851 | Release Notes |
Configurations
History
No history.
Information
Published : 2026-06-17 20:16
Updated : 2026-07-21 15:23
NVD link : CVE-2026-10741
Mitre link : CVE-2026-10741
CVE.ORG link : CVE-2026-10741
JSON object : View
Products Affected
sonatype
- nexus_repository_manager
CWE
CWE-863
Incorrect Authorization
