CVE-2026-3048 Details
Description
An authenticated administrator who configures or tests LDAP connectivity in Sonatype Nexus Repository Manager versions 3.0.0 through 3.91.1 may be able to initiate unintended server-side connections when interacting with a malicious LDAP server.
A vulnerability exists in Sonatype Nexus Repository Manager versions 3.0.0 through 3.91.1, allowing an authenticated administrator to unintentionally initiate server-side connections to a malicious LDAP server. This issue arises when the administrator configures or tests LDAP connectivity, potentially leading to exploitation.
Users are advised to upgrade to Sonatype Nexus Repository version 3.92.0 or later. For those unable to upgrade immediately, LDAP referral following can be disabled by adding a specific property to the 'nexus.properties' file, which prevents the server from following LDAP referrals and requires a restart. Additionally, access to LDAP configuration should be restricted to trusted administrator accounts, and network access to the Nexus Repository management interface should be limited to trusted segments or VPN-only.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed May 11, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://help.sonatype.com/en/sonatype-nexus-repository-3-92-0-release-notes.html | Sonatype | Release Notes |
| https://support.sonatype.com/hc/en-us/articles/51591695462675 | Sonatype | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-502 | Deserialization of Untrusted Data | Sonatype |
| CWE-918 | Server-Side Request Forgery (SSRF) | Sonatype |
Affected Products
| Product | Versions |
|---|---|
| sonatype nexus repository manager | >= 3.0.0, < 3.92.0 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 22, 2026 | Initial Analysis | [email protected] |
| Jun 17, 2026 | CVE Modified | Sonatype |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| May 11, 2026 | New CVE Received | Sonatype |