SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-77121

MEDIUM · CVSS 5.3 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability exists in hosted Maven repositories that allows a user with deployment permissions to upload a POM file with an excessively large metadata field. This results in the inability to list or browse components in the affected repository, requiring administrative intervention to repair the data. Organizations using Maven repositories should prioritize addressing this issue to ensure uninterrupted access to their components.

CVE
CVE-2026-77121
Severity
MEDIUM
CVSS
5.3
EPSS
0.24%

Original NVD Description

A user account with permission to deploy artifacts to a hosted Maven repository could upload a POM file containing an oversized metadata field. This causes future attempts to list or browse that repository's components to permanently fail until an administrator repairs the underlying data. Only the targeted repository is affected; other repositories and overall server health remain unaffected.