Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-3199

A vulnerability in the task management component of Sonatype Nexus Repository versions 3.22.1 through 3.90.2 allows an authenticated attacker with task creation permissions to execute arbitrary code, bypassing the nexus.scripts.allowCreation security control.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 45.2%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2026-3199


Contact Us

Shodan ® - All rights reserved