CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-77121

mediumcovered by 2 sourcesfirst seen 2026-09-02
An attacker can exploit multiple vulnerabilities in Sonatype Nexus Repository Manager to conduct a denial of service attack, disclose information, execute code, or bypass security measures.

CSIRTS triage

What
Multiple vulnerabilities in Sonatype Nexus Repository Manager enable denial of service, information disclosure, code execution, and security bypass.
Who is affected
Organizations running Nexus Repository Manager are affected.
Urgency
Medium severity baseline, but code execution capability warrants urgent patching as repositories are critical infrastructure.
Action
Apply Sonatype security updates addressing CVE-2026-77121 through CVE-2026-77125.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-77121

Get an email if CVE-2026-77121 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Advisory coverage (2)

External references

NVD record for CVE-2026-77121

CVE.org record

Embed the live status

CVE-2026-77121 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-77121 status](https://www.csirts.com/badge/CVE-2026-77121)](https://www.csirts.com/cve/CVE-2026-77121)