sonatype-2026-000542 | Security Details | Sonatype Guide
sonatype-2026-000542
Malicious Packages - Fri Feb 20 2026 [SANDWORM_MODE] [Secrets Exfiltration, Data Corruption, Backdoor]
Published Feb 20, 2026
CVSS Score: Critical
Security Details
sonatype-2026-000542 Security Details
CVE ID: sonatype-2026-000542
CWE: N/A
CVE Description: Malicious Packages - Fri Feb 20 2026 [SANDWORM_MODE] [Secrets Exfiltration, Data Corruption, Backdoor]
Published: Feb 20, 2026
CVSS Score & Severity: 9.3 Critical
CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:H/SA:N
EPSS Score: 0%
Malware
KEV Status: Not in KEV Catalog: No known exploits
Affected Ecosystems
Source: Sonatype
References
- help.sonatype.com THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY
- OSV THIRD_PARTY