{"id":"CVE-2026-77125","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-77125","summary":"A vulnerability was identified in Sonatype Nexus Repository 3 in which two blobstore group management REST API endpoints did not correctly enforce the intended authorization check.…","details":"A vulnerability was identified in Sonatype Nexus Repository 3 in which two blobstore group management REST API endpoints did not correctly enforce the intended authorization check. A user granted only the nexus:blobstores:create permission could invoke these endpoints to convert an existing blobstore into a group blobstore, an action that should require the nexus:blobstores:update permission instead. This could result in unauthorized modification of blobstore configuration without administrator approval. The nexus:blobstores:create permission is a named permission that must be explicitly granted by an administrator; it is not held by default.","published":"2026-09-02T18:21:25.023","modified":"2026-09-02T19:18:04.730","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://help.sonatype.com/en/sonatype-nexus-repository-3-96-0-release-notes.html"},{"type":"WEB","url":"https://support.sonatype.com/hc/en-us/articles/54643114434451/"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-09-02T19:18:04.730"}}