Description Sonatype Nexus Repository Manager 2.x before 2.14.15 allows Remote Code Execution. Remediation References CVE-2019-15893 Related Vulnerabilities WordPress Plugin Donate by BestWebSoft Cross-Site Scripting (2.0.1) Dolibarr Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2026-31019) WordPress Plugin Error Log Viewer by BestWebSoft Cross-Site Scripting (1.0.5) Zikula Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-3979) XWikiplatform Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-40104) Severity High Classification CVE-2019-15893 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities