CVE-2019-16530: Sonatype Nexus Iq Server

High severity, CVSS 7.2. EPSS: 3.3% chance of exploitation in the next 30 days.

Sonatype Nexus Repository Manager 2.x before 2.14.15 and 3.x before 3.19, and IQ Server before 72, has remote code execution.

Affected products

  • Sonatype Nexus Iq Server: up to and including 72
  • Sonatype Nexus Repository Manager: from 2.0.0, up to and including 2.14.14; from 3.0.0, up to and including 3.18.1

Published 2019-10-21. Last modified 2026-06-17.