mapserver
Security Risk Profile
38
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 5 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from July 22, 2010 to present
5
Total CVEs
2
Critical+High
0
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
5.8
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
38/100
low
Severity Distribution
Critical
0High
2Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
2
2
Out-of-bounds Read
1
3
Null Pointer Dereference
1
4
XSS
1
5
SQL Injection
1
Most Affected Products
1. MapServer MapServer5
2. OSGeo MapServer3
Recent Vulnerabilities
See more →CVE-2026-45104
CVSS 7.5high
MapServer: NULL pointer dereference in SLD `<ElseFilter>` rule parsing reachable via WMS `SLD_BODY`
5/27/2026🔧 No Patch
CVE-2026-42030
CVSS 6.1medium
MapServer: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in OpenLayers viewer
5/8/2026🔧 No Patch
CVE-2026-33721
CVSS 7.5EPSS 0%high
MapServer has heap buffer overflow in SLD `Categorize` Threshold parsing
3/27/2026🔧 No Patch
REDHAT-BUG-723293
CVSS 4.0medium
7/19/2011🔧 No Patch
REDHAT-BUG-617312
CVSS 4.0medium
7/22/2010🔧 No Patch
Monitor mapserver in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.