Skip to main content
Sonatype Support Help Center home page My Sonatype
Community
Forum Ideas Office Hours Innovate
Learn
Courses Videos
Support
Knowledge Base Documentation
Resources
SSC Maturity Survey STEPP Assessment Hosted Workshops
Sign In Submit a request Sign In

Forum Ideas Office Hours Innovate
Courses Videos
Knowledge Base Documentation
SSC Maturity Survey STEPP Assessment Hosted Workshops
  1. Sonatype Support
  2. Announcements

Announcements

Announcements

  • PostgreSQL Index Corruption - "duplicate key violation" errors
  • Sonatype Data Services (HDS) Regularly Scheduled Maintenance
  • IQ Server vulnerability information contains the Root Cause
  • codehaus.org Repositories Should Be Removed From Your Nexus Repository Instance
  • Log4Shell log4j Vulnerability CVE-2021-44228 Status
  • Spring Framework RCE Vulnerability CVE-2021-22963 and SONATYPE-2022-1764
See all 7 articles

Security Advisories

  • CVE-2026-14646 Nexus Repository 3 - SSRF via HTTP Redirect - 2026-07-14
  • CVE-2026-14645 Nexus Repository 3 - Webhook SSRF - 2026-07-14
  • CVE-2026-14504 Nexus Repository 3 - Authorization Bypass in Component Upload API - 2026-07-14
  • CVE-2026-7494 Nexus Repository 3 - SSRF in SSL Certificate Retrieval - 2026-07-14
  • CVE-2026-3329 Nexus Repository 3 - Authentication Handling Issue - 2026-06-11
  • CVE-2026-11403 Nexus Repository 3 - Insufficient Entropy in API Key Generation - 2026-07-14
See all 52 articles
Terms of Service Privacy Policy Cookie Preferences
Copyright © 2008-present, Sonatype Inc. All rights reserved. Includes the third-party code listed here. Sonatype and Sonatype Nexus are trademarks of Sonatype, Inc. Apache Maven and Maven are trademarks of the Apache Software Foundation. M2Eclipse is a trademark of the Eclipse Foundation. All other trademarks are the property of their respective owners.