Description
Sonatype Nexus Repository before 3.21.2 allows Remote Code Execution.
Remediation
References
https://support.sonatype.com/hc/en-us/articles/360044356194
Related Vulnerabilities
CVE-2023-25721 Vulnerability in maven package com.veracode.jenkins:veracode-scan
CVE-2022-24816 Vulnerability in maven package it.geosolutions.jaiext.jiffle:jt-jiffle-language
CVE-2023-41037 Vulnerability in npm package openpgp
CVE-2019-10383 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2020-26870 Vulnerability in maven package org.webjars.bowergithub.cure53:dompurify