geoserver Summary
Latest vulnerabilities published by geoserver
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
XML External Entity Exploit in GeoServer and GeoNetwork by GeoTools
CVE-2025-30220GeoserverGeoserver9.9CRITICALDenial of Service Vulnerability in GeoServer Affecting Geospatial Data Management
CVE-2025-30145GeoserverGeoserver7.5HIGHGeoServer Open Source Server Vulnerability Exposing REST API Security Routes
CVE-2025-27505GeoserverGeoserver5.3MEDIUMOpen Source Geospatial Server Vulnerability in GeoServer by OSGeo
CVE-2024-40625GeoserverGeoserver5.5MEDIUMGeoServer Vulnerability Exposing Sensitive Information in GeoWebCache
CVE-2024-38524GeoserverGeoserver5.3MEDIUMImproper URI Validation in GeoServer by GeoTools
CVE-2024-34711GeoserverGeoserver9.3CRITICALService Side Request Forgery Vulnerability in GeoServer by OSGeo
CVE-2024-29198GeoserverGeoserver7.5HIGHSensitive Information Disclosure in GeoServer Versions
CVE-2024-35230GeoserverGeoserver5.3MEDIUMRemote Code Execution Vulnerability in GeoServer Prior to Versions 2.23.6, 2.24.4, and 2.25.2
CVE-2024-36401GeoserverGeoserverππ°πΎπ‘EPSS 94%π¦ π°9.8CRITICALGeoServer Vulnerability Allows Access to Sensitive Information
CVE-2024-34696GeoserverGeoserver4.9MEDIUMPotential Security Vulnerability in GeoServer Prior to Versions 2.23.5 and 2.24.3
CVE-2024-24749GeoserverGeoserver7.5HIGHStored XSS Vulnerability in GeoServer Could Allow Authenticated Administrator to Execute JavaScript in Another User's Browser
CVE-2024-23821GeoserverGeoserver4.8MEDIUMStored XSS Vulnerability in GeoServer Could Allow Authenticated Administrator to Execute JavaScript in Other Users' Browsers
CVE-2024-23819GeoserverGeoserver4.8MEDIUMStored XSS Vulnerability in GeoServer Could Allow Authenticated Administrator to Execute JavaScript in Another User's Browser
CVE-2024-23818GeoserverGeoserver4.8MEDIUMStored XSS vulnerability in GeoServer catalog
CVE-2024-23643GeoserverGeoserver4.8MEDIUMStored XSS Vulnerability in GeoServer Could Allow Authenticated Administrator to Execute JavaScript in Another User's Browser
CVE-2024-23642GeoserverGeoserver4.8MEDIUMStored XSS Vulnerability in GeoServer Could Allow Authenticated Administrator to Execute JavaScript in Another User's Browser
CVE-2024-23640GeoserverGeoserver4.8MEDIUMArbitrary File Renaming Vulnerability in GeoServer Prior to 2.23.5 and 2.24.2
CVE-2024-23634GeoserverGeoserver6MEDIUMStored XSS Vulnerability in GeoServer Could Allow Administrator Privilege Escalation
CVE-2023-51445GeoserverGeoserver4.8MEDIUMArbitrary File Upload Vulnerability in GeoServer Could Lead to Remote Code Execution
CVE-2023-51444GeoserverGeoserverπ°7.2HIGHPath Traversal Vulnerability in GeoServer Affects Administrator Trust
CVE-2023-41877GeoserverGeoserver7.2HIGHGeoServer GeoWebCache rest.html direct request
CVE-2023-5786GeoserverGeowebcache5.3MEDIUMUnsecured WMS dynamic styling sld=<url> parameter affords blind unauthenticated SSRF in GeoServer
CVE-2023-41339GeoserverGeoserver8.6HIGHWPS Server Side Request Forgery in GeoServer
CVE-2023-43795geoservergeoserverEPSS 90%9.8CRITICALRemote Code Execution Vulnerability in GeoServer by GeoSolutions
CVE-2023-35042GeoserverGeoserverEPSS 31%9.8CRITICAL