A vulnerability has been reported in Sonatype Nexus, which can be exploited by malicious users to disclose sensitive information.
Certain unspecified input is not properly verified before being used to read files. This can be exploited to disclose the contents of arbitrary local files via directory traversal sequences.
The vulnerability is reported in versions prior to 2.11.1-01.