Vulnerability Database
Blog
FAQ
Docs
CVE-2021-43961
See a problem?
Source
https://nvd.nist.gov/vuln/detail/CVE-2021-43961
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-43961.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2021-43961
Published
2022-03-17T22:15:08Z
Modified
2024-09-03T03:57:36.888872Z
Severity
4.3 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Sonatype Nexus Repository Manager 3.36.0 allows HTML Injection.
References
https://issues.sonatype.org/secure/ReleaseNote.jspa
https://support.sonatype.com/hc/en-us/articles/4412183372307
Affected packages
Git
/
github.com/sonatype/nexus-public
Affected ranges
Type
GIT
Repo
https://github.com/sonatype/nexus-public
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
967780bde7b91b2858df835ee4d3963fd7c10b4b
Affected versions
3.*
3.37.1-01
release-3.*
release-3.20.0-04
release-3.20.1-01
release-3.21.0-05
release-3.22.0-02
release-3.22.1-02
release-3.23.0-03
release-3.24.0-02
release-3.25.0-03
release-3.25.1-02
release-3.26.0-04
release-3.26.1-02
release-3.27.0-03
release-3.28.0-01
release-3.28.1-01
release-3.29.0-02
release-3.29.1-01
release-3.29.2-02
release-3.3.0-01
release-3.30.0-01
release-3.30.1-01
release-3.31.0-01
release-3.31.1-01
release-3.32.0-03
release-3.33.0-01
release-3.33.1-01
release-3.34.0-01
release-3.34.1-01
release-3.35.0-02
release-3.36.0-01
release-3.37.0-01
release-3.37.3-02
release-3.4.0-02
release-3.5.0-02
CVE-2021-43961 - OSV