← Browse

CVE-2026-14646

Medium

Elevated severity or exploit probability.

CVSS base
7.7 HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
EPSS — probability of exploitation (30 days)
0.3%
16.4th percentile
CISA KEV
Not listed
Weakness / dates
CWE-918
Published 2026-07-14 · modified 2026-09-22

CVSS breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N

Attack VectorNNetwork
Attack ComplexityLLow
Privileges RequiredLLow
User InteractionNNone
ScopeCChanged
ConfidentialityNNone
IntegrityHHigh
AvailabilityNNone

Timeline

Description

Nexus Repository 3 did not apply its existing Server-Side Request Forgery (SSRF) protections to HTTP redirect targets returned by proxy repository upstream servers. Any user with read access to a proxy repository backed by an attacker-controlled or compromised upstream server — including an anonymous user, if anonymous access is enabled — could receive a response from an internal network address or cloud metadata endpoint as repository content, potentially exposing sensitive information such as cloud IAM credentials.

Affected

sonatype

References

Official: NVD · CVE.org