CVE-2019-14469: Sonatype Nexus Repository Manager

Medium severity, CVSS 5.4. EPSS: 1.1% chance of exploitation in the next 30 days.

In Nexus Repository Manager before 3.18.0, users with elevated privileges can create stored XSS.

Affected products

  • Sonatype Nexus Repository Manager: from 3.14.0, up to and including 3.17.0

Published 2019-08-22. Last modified 2026-06-17.