Package impact
Maven / org.geoserver:gs-wfs
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-36401 | unknown | — | 2.5 | 2y ago | OSGeo GeoServer GeoTools contains an improper neutralization of directives in dynamically evaluated code vulnerability due to unsafely evaluating property names as XPath expressions. This allows unau… | |||
| CVE-2025-30220 | unknown | — | — | 1y ago | [XBOW-025-068] XML External Entity (XXE) Processing Vulnerability in GeoServer WFS Service | |||
| CVE-2024-29198 | unknown | — | — | 1y ago | GeoServer Vulnerable to Unauthenticated SSRF via TestWfsPost | |||
| CVE-2023-35042 | unknown | — | — | 3y ago | GeoServer RCE due to improper control of generation of code in jai-ext`Jiffle` map algebra language |