CVE-2026-17595 | Sonatype Nexus Repository up to 3.94.x JEXL Sandbox privileges management

SecurityVulns

A vulnerability classified as problematic has been found in Sonatype Nexus Repository up to 3.94.x. Impacted is an unknown function of the component JEXL Sandbox. The manipulation leads to improper privilege management.

This vulnerability is traded as CVE-2026-17595. It is possible to initiate the attack remotely. There is no exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More