Geoserver

Geoserver

25 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.04%
  • Veröffentlicht 25.11.2025 21:52:11
  • Zuletzt bearbeitet 03.12.2025 16:43:45

GeoServer is an open source server that allows users to share and edit geospatial data. Prior to version 2.25.0, a reflected cross-site scripting (XSS) vulnerability exists in the WMS GetFeatureInfo HTML output format that enables a remote attacker t...

Warnung Medienbericht
  • EPSS 12.06%
  • Veröffentlicht 25.11.2025 20:17:35
  • Zuletzt bearbeitet 11.12.2025 20:16:09

GeoServer is an open source server that allows users to share and edit geospatial data. From version 2.26.0 to before 2.26.2 and before 2.25.6, an XML External Entity (XXE) vulnerability was identified. The application accepts XML input through a spe...

Exploit
  • EPSS 5.63%
  • Veröffentlicht 10.06.2025 15:16:39
  • Zuletzt bearbeitet 26.08.2025 16:10:11

GeoServer is an open source server that allows users to share and edit geospatial data. GeoTools Schema class use of Eclipse XSD library to represent schema data structure is vulnerable to XML External Entity (XXE) exploit. This impacts whoever expos...

  • EPSS 0.04%
  • Veröffentlicht 10.06.2025 14:58:48
  • Zuletzt bearbeitet 26.08.2025 16:11:23

GeoServer is an open source server that allows users to share and edit geospatial data. Malicious Jiffle scripts can be executed by GeoServer, either as a rendering transformation in WMS dynamic styles or as a WPS process, that can enter an infinite ...

  • EPSS 0.32%
  • Veröffentlicht 10.06.2025 14:52:19
  • Zuletzt bearbeitet 26.08.2025 16:11:55

GeoServer is an open source server that allows users to share and edit geospatial data. It is possible to bypass the default REST API security and access the index page. The REST API security handles rest and its subpaths but not rest with an extensi...

  • EPSS 0.04%
  • Veröffentlicht 10.06.2025 14:49:05
  • Zuletzt bearbeitet 26.08.2025 16:22:20

GeoServer is an open source server that allows users to share and edit geospatial data. The Coverage rest api /workspaces/{workspaceName}/coveragestores/{storeName}/{method}.{format} allows attackers to upload files with a specified url (with {method...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 10.06.2025 14:43:04
  • Zuletzt bearbeitet 26.08.2025 16:22:42

GeoServer is an open source server that allows users to share and edit geospatial data. org.geowebcache.GeoWebCacheDispatcher.handleFrontPage(HttpServletRequest, HttpServletResponse) has no check to hide potentially sensitive information from users e...

  • EPSS 0.08%
  • Veröffentlicht 10.06.2025 14:33:18
  • Zuletzt bearbeitet 26.08.2025 16:24:18

GeoServer is an open source server that allows users to share and edit geospatial data. An improper URI validation vulnerability exists that enables an unauthorized attacker to perform XML External Entities (XEE) attack, then send GET request to any ...

  • EPSS 5.15%
  • Veröffentlicht 10.06.2025 14:27:39
  • Zuletzt bearbeitet 26.08.2025 16:25:00

GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. It possible to achieve Service Side Request Forgery (SSRF) via the Demo request endpoint if Proxy Base URL has not been set. Upgrading to...

Exploit
  • EPSS 0.18%
  • Veröffentlicht 16.12.2024 23:15:06
  • Zuletzt bearbeitet 26.08.2025 16:48:42

GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. In affected versions the welcome and about page includes version and revision information about the software in use (including library an...