CVE-2026-17603 | Sonatype Nexus Repository up to 3.94.x DataStore Configuration API connectionInitSql permission
A vulnerability classified as problematic was found in Sonatype Nexus Repository up to 3.94.x. The affected element is an unknown function of the component DataStore Configuration API. The manipulation of the argument connectionInitSql results in permission issues.
This vulnerability is known as CVE-2026-17603. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More