Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.2
CVE-2025-58175
GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.26.4 and 2.27.3, a GeoServer that uses `E…
Geoserver
2.26.4 / 2.27.3+
HIGH 7.2
CVE-2025-52465
GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.26.4 and 2.27.3, a vulnerability exists t…
Geoserver
2.26.4 / 2.27.3+
HIGH 7.2
CVE-2025-27511
GeoServer is an open source server that allows users to share and edit geospatial data. Prior to version 2.27.0 of the GeoServer DB2 DataStore Extens…
Geoserver
2.27.0+
HIGH 7.5
CVE-2026-45104
MapServer is a system for developing web-based GIS applications. From 6.4.0 to before 8.6.3, msSLDParseUserStyle always calls _SLDApplyRuleValues(psR…
Mapserver
8.6.3+
HIGH 7.8
CVE-2026-49014
In GDAL 3.1.0 through 3.13.0, scanForGeometryContainers in the netCDF driver allows code execution via a stack-based buffer overflow. It reads a geom…
Gdal
after 3.13.0
MEDIUM 5.5
CVE-2026-8212
A flaw has been found in OSGeo gdal up to 3.13.0dev-4. Affected by this vulnerability is the function SWSDfldsrch of the file frmts/hdf4/hdf-eos/SWap…
Gdal
after 3.12.4
MEDIUM 5.5
CVE-2026-8213
A vulnerability has been found in OSGeo gdal up to 3.13.0dev-4. Affected by this issue is the function GDSDfldsrch of the file frmts/hdf4/hdf-eos/GDa…
Gdal
after 3.12.4
MEDIUM 6.1
CVE-2026-42030
MapServer is a system for developing web-based GIS applications. From version 6.0 to before version 8.6.2, a reflected XSS vulnerability in MapServer…
Mapserver
8.6.2+
HIGH 7.8
CVE-2026-8087
A security flaw has been discovered in OSGeo gdal up to 3.13.0dev-4. Impacted is the function GDnentries of the file frmts/hdf4/hdf-eos/GDapi.c. Perf…
Gdal
after 3.12.4
MEDIUM 5.5
CVE-2026-8088
A weakness has been identified in OSGeo gdal up to 3.13.0dev-4. The affected element is the function GDfieldinfo of the file frmts/hdf4/hdf-eos/GDapi…
Gdal
after 3.12.4
HIGH 7.8
CVE-2026-8086
A vulnerability was identified in OSGeo gdal up to 3.13.0dev-4. This issue affects the function SWnentries of the file frmts/hdf4/hdf-eos/SWapi.c. Su…
Gdal
after 3.12.4
MEDIUM 5.5
CVE-2026-8084
A vulnerability was determined in OSGeo gdal up to 3.13.0dev-4. This vulnerability affects the function memmove of the file frmts/hdf4/hdf-eos/SWapi.…
Gdal
after 3.12.4
HIGH 7.5
CVE-2026-33721
MapServer is a system for developing web-based GIS applications. Starting in version 4.2 and prior to version 8.6.1, a heap-buffer-overflow write in …
Mapserver
8.6.1+
MEDIUM 6.5
CVE-2022-50899
Geonetwork 3.10 through 4.2.0 contains an XML external entity vulnerability in PDF rendering that allows attackers to retrieve arbitrary files from t…
Geonetwork
after 4.2.0
CRITICAL 9.8
CVE-2025-59431
MapServer is a system for developing web-based GIS applications. Prior to 8.4.1, the XML Filter Query directive PropertyName is vulnerably to Boolean…
Mapserver
Mitigation only
HIGH 7.5
CVE-2025-30145
GeoServer is an open source server that allows users to share and edit geospatial data. Malicious Jiffle scripts can be executed by GeoServer, either…
Geoserver
2.25.7 / 2.26.3+
MEDIUM 5.3
CVE-2025-27505
GeoServer is an open source server that allows users to share and edit geospatial data. It is possible to bypass the default REST API security and ac…
Geoserver
2.25.6 / 2.26.3+
HIGH 8.2
CVE-2024-29198
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. It possible to achieve Service Side …
Geoserver
2.24.4 / 2.25.2+
HIGH 8.2
CVE-2024-34711
GeoServer is an open source server that allows users to share and edit geospatial data. An improper URI validation vulnerability exists that enables …
Geoserver
2.25.0+
HIGH 7.5
CVE-2024-38524
GeoServer is an open source server that allows users to share and edit geospatial data. org.geowebcache.GeoWebCacheDispatcher.handleFrontPage(HttpSer…
Geoserver
2.25.6 / 2.26.2+
MEDIUM 5.5
CVE-2025-29480
Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function. NOTE…
Gdal
No fix yet
MEDIUM 5.3
CVE-2024-32037
GeoNetwork is a catalog application to manage spatially referenced resources. In versions prior to 4.2.10 and 4.4.5, the search end-point response he…
Geonetwork
4.2.10 / 4.4.5+
MEDIUM 5.3
CVE-2024-35230
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. In affected versions the welcome and…
Geoserver
2.25.1+
CRITICAL 9.8
CVE-2023-43795EPSS 68%
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The OGC Web Processing Service (WPS)…
Geoserver
2.22.5 / 2.23.2+
MEDIUM 5.3
CVE-2023-41339
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The WMS specification defines an ``s…
Geoserver
2.22.5 / 2.23.2+
HIGH 7.5
CVE-2023-27476
OWSLib is a Python package for client programming with Open Geospatial Consortium (OGC) web service interface standards, and their related content mo…
Owslib
0.28.1+
CRITICAL 9.8
CVE-2023-25157EPSS 85%
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. GeoServer includes support for the O…
Geoserver
2.18.7 / 2.19.7+
CRITICAL 9.8
CVE-2022-0699
A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attacker to cause a denial of servi…
Shapelib
after 1.5.0
HIGH 7.2
CVE-2021-28398
A privileged attacker in GeoNetwork before 3.12.0 and 4.x before 4.0.4 can use the directory harvester before-script to execute arbitrary OS commands…
Geonetwork
3.12.0 / 4.0.4+
HIGH 7.5
CVE-2021-40822EPSS 19%
GeoServer through 2.18.5 and 2.19.x through 2.19.2 allows SSRF via the option for setting a proxy host.
Geoserver
2.19.3+