Vulnerabilities > Sonatype > Low

DATE CVE VULNERABILITY TITLE RISK
2021-08-10 CVE-2021-37152 Cross-site Scripting vulnerability in Sonatype Nexus Repository Manager
Multiple XSS issues exist in Sonatype Nexus Repository Manager 3 before 3.33.0.
network
sonatype CWE-79
3.5
2020-04-01 CVE-2020-10203 Cross-site Scripting vulnerability in Sonatype Nexus
Sonatype Nexus Repository before 3.21.2 allows XSS.
network
sonatype CWE-79
3.5
2019-08-22 CVE-2019-14469 Cross-site Scripting vulnerability in Sonatype Nexus Repository Manager
In Nexus Repository Manager before 3.18.0, users with elevated privileges can create stored XSS.
network
sonatype CWE-79
3.5
2018-06-11 CVE-2018-12100 Cross-site Scripting vulnerability in Sonatype Nexus Repository Manager
Sonatype Nexus Repository Manager versions 3.x before 3.12.0 has XSS in multiple areas in the Administration UI.
network
sonatype CWE-79
3.5