CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-77123

mediumcovered by 2 sourcesfirst seen 2026-09-02
An attacker can exploit multiple vulnerabilities in Sonatype Nexus Repository Manager to conduct a denial of service attack, disclose information, execute code, or bypass security measures.

CSIRTS triage

What
Multiple vulnerabilities in Sonatype Nexus Repository Manager enable denial of service, information disclosure, code execution, and security bypass.
Who is affected
Organizations running Nexus Repository Manager are affected.
Urgency
Medium severity baseline, but code execution capability warrants urgent patching as repositories are critical infrastructure.
Action
Apply Sonatype security updates addressing CVE-2026-77121 through CVE-2026-77125.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-77123

Get an email if CVE-2026-77123 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Advisory coverage (2)

External references

NVD record for CVE-2026-77123

CVE.org record

Embed the live status

CVE-2026-77123 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-77123 status](https://www.csirts.com/badge/CVE-2026-77123)](https://www.csirts.com/cve/CVE-2026-77123)