Skip to main content

2026 Self-Hosted Nexus Repository Release Notes

This page contains a list of Sonatype Nexus Repository self-hosted releases, links to each release's detailed release notes, and a brief list of major changes.

If you are using Nexus Repository Cloud, see our Nexus Repository Cloud release notes instead.

Ready to Upgrade?

Before upgrading to a new self-hosted Nexus Repository version, be sure to check out the Known Issues & Upgrade Guidance section on that version's release notes to determine whether any known issues or upgrade recommendations apply to your environment.

Version(s)

Release Date(s)

Highlights

3.96.0 - 3.96.4

September 30, 2026 (3.96.4)

September 22, 2026 (3.96.3)

September 18, 2026 (3.96.2)

September 12, 2026 (3.96.1)

September 1, 2026 (3.96.0)

  • Azure direct download for Azure blob store

  • Removal of Nexus Repository 2-to-3 upgrade wizard

  • OAuth2 and SSL certificate management in the Nexus One UI

  • Improved component details experience in the Nexus One UI

  • Improved Community Edition usage visibility in the Nexus One UI

  • Improved audit logging and visibility in the Nexus One UI

  • Streamlined user management in the Nexus One UI

  • LDAP and Atlassian Crowd configuration now available in the Nexus One UI

  • Improved chained proxy support across multiple repository formats

  • Reduced bandwidth for npm metadata responses

  • npm abbreviated packument support for faster package installs

  • POM metadata size protection for Maven repositories

  • Consistent scripting controls

  • Telemetry delivery notification

3.95.0 – 3.95.4

September 12, 2026 (3.95.4)

August 27, 2026 (3.95.3)

August 21, 2026 (3.95.2)

August 13, 2026 (3.95.1)

August 5, 2026 (3.95.0)

  • Support for Composer hosted and group repositories

  • NuGet hosted, proxy, and group repositories support Chocolatey registry and Microsoft Symbol Server

  • Hugging Face proxy repositories now support the latest huggingface_hub client workflows

  • PyPI proxy repository enhancements improve compatibility with private and version-specific repositories

  • Improvements to Nexus One UI

  • Amazon ECR proxy repositories now support temporary AWS credentials

  • Expanded Instance Migrator Support for Ansible Galaxy, OCI, and Terraform (Instance Migrator 1.1.28)

3.94.0 – 3.94.2

August 27, 2026 (3.94.2)

July 24, 2026 (3.94.1)

July 9, 2026 (3.94.0)

  • Support for OCI repositories

  • Proxy private Amazon ECR registries with Docker repositories

  • PyPI Simple API v1.1 support for faster dependency resolution

  • Java EE 10 upgrade for modernized platform infrastructure

  • Improved Docker repository management experience

  • Improved Docker proxy repository performance for large image catalogs

  • Simplified URL encoding configuration for proxy repositories

  • Updated defaults for Conan proxy repositories

  • Enhanced compatibility for Terraform proxy repositories

  • Immediate session invalidation on password change

  • Stronger API key generation with UUID v4

  • Repository Firewall: new Malware Threat Landscape dashboard

  • Repository Firewall: centralized waiver request and management

  • Repository Firewall: expanded Firewall webhook events

  • Repository Firewall: repository-scoped access to the Firewall dashboard

  • Repository Firewall: improved quarantine timeline visibility

  • Repository Firewall: support for conda-forge upstreams

3.93.0 – 3.93.2

June 25, 2026 (3.93.2)

June 19, 2026 (3.93.1)

June 4, 2026 (3.93.0)

  • Support for Go hosted and group repositories

  • Support for Ansible repositories

  • Support for Alpine repositories

  • New nameCode parameter in User Token API

  • Granular control of uploader metadata visibility

  • Enhanced PyPI repository compatibility

  • New endpoints in Security Management: User Roles API

  • IP allow list

  • OAuth2/OIDC configuration API

  • Improved protection for proxy repository credentials

  • Refreshed artifact upload UI

  • Expanded enterprise deployment options for Kubernetes

  • Authentication attempt rate limits for added protection

3.92.0 – 3.92.3

May 26, 2026 (3.92.3)

May 13, 2026 (3.92.2)

May 12, 2026 (3.92.1)

May 7, 2026 (3.92.0)

  • First look at new Sonatype Nexus Repository user interface

  • Pub repository support for Dart and Flutter

  • Support for Conda hosted and group repositories

  • Support for Helm group repositories

  • Instance Migrator support for migrating Swift, Terraform, and Conda hosted repositories

  • Database connection pool metrics accessible via API

  • SSRF protection enabled by default

  • New SSRF API endpoint

  • Usage Insights dashboard retains daily storage metrics

  • Webhook support for Repository Firewall events

  • Firewall bulk waivers for faster quarantine management

3.91.0 – 3.91.1

April 17, 2026 (3.91.1)

April 7, 2026 (3.91.0)

  • Docker tagging updates for Nexus Repository images

  • Support for Swift group repositories

  • Preserved proxy repository configuration during migration

  • Automated Yum repository metadata regeneration

  • Global webhooks for Firewall quarantine events

  • Cloud-native AWS reference architectures now available

3.90.0 – 3.90.5

August 17, 2026 (3.90.5)

July 2, 2026 (3.90.4)

April 8, 2026 (3.90.3)

March 23, 2026 (3.90.2)

March 6, 2026 (3.90.1)

March 5, 2026 (3.90.0)

  • New Instance Migrator helps Nexus Repository 3.70.5 deployments move to Sonatype Cloud or self-hosted 3.90.2 without downtime

  • Support for Terraform group repositories

  • Support for Swift hosted repositories

  • Re-enabled Repair - Execute Data Repair Plan Task

  • New Recovery Mode for safe data reconciliation

  • New User Token API

  • Improved transparency for Policy-Compliant Component Selection in npm metadata

  • Removed Legacy Application Health Check and Hosted Repository Analysis

3.89.0

February 11, 2026 (3.89.1)

February 3, 2026 (3.89.0)

  • Support for Swift proxy repositories

  • Support for Terraform hosted repositories

  • Expanded auth options for Terraform

  • Improved UI performance and faster page loads

  • Change in permissions for executing rolling upgrades

  • SAML login requires SAML2_AUTH_REQUEST cookie

3.88.0

January 13, 2026

  • Support for proxy Terraform repositories

  • Search now powered by SQL instead of Elasticsearch

  • New API to retrieve Capability types and metadata

  • New Capability and Task for managing browse tree cleanup

  • Configurable iteration settings for password and secret encryption

  • New URL validation to protect against private network access

  • Updated SAML library for improved security and compatibility