Description
Sonatype Nexus Repository Manager 3.x before 3.31.0 allows a remote authenticated attacker to get a list of blob files and read the content of a blob file (via a GET request) without having been granted access.
Remediation
References
Related Vulnerabilities
WordPress Plugin moreAds SE Open Redirect (1.4.8)
WordPress Plugin Smash Balloon Social Post Feed Cross-Site Scripting (2.19.1)
WebLogic CVE-2023-21996 Vulnerability (CVE-2023-21996)
TYPO3 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-1607)
WordPress Plugin All 404 Redirect to Homepage Cross-Site Scripting (1.21)