CVE-2019-7238

Sonatype Nexus Repository Manager before 3.15.0 has Incorrect Access Control.

  • Published Mar 21, 2019
  • CVSS 9.8 critical
  • 77.1% chance of exploitation in the next 30 days (EPSS)
  • In CISA's Known Exploited Vulnerabilities catalog
  • A fix is available

CVE-2019-7238 at the National Vulnerability Database