geoserver
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 22 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from September 14, 2009 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →CVE-2025-52465 geoserver arbitrary file write vulnerability
CISA orders feds to patch actively exploited Geoserver flaw
OSGeo GeoServer Improper Restriction of XML External Entity Reference Vulnerability
GeoServer Reflected Cross-Site Scripting (XSS) vulnerability in WMS GetFeatureInfo HTML format
CISA says hackers breached federal agency using GeoServer exploit
Remote Code Execution (RCE) vulnerability in evaluating property name expressions in Geoserver
GeoServer's Server Status shows sensitive environmental variables and Java properties
Classpath resource disclosure in GWC Web Resource API on Windows / Tomcat
GeoServer's GWC Demos Page vulnerable to Stored Cross-Site Scripting (XSS)
GeoServer Stored Cross-Site Scripting (XSS) vulnerability in MapML HTML Page
Monitor geoserver in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.