CVE-2024-40625 GeoServer Coverage REST API Allows Server Side Request Forgery
Discription

image
GeoServer is an open source server that allows users to share and edit geospatial data. The Coverage rest api /workspaces/{workspaceName}/coveragestores/{storeName}/{method}.{format} allows attackers to upload files with a specified url (with {method} equals 'url') with no restrict. This vulnerability is fixed in…Read More

Back to Main

Subscribe for the latest news: