Логотип exploitDog
bind:CVE-2025-30145
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-30145

Количество 2

Количество 2

nvd логотип

CVE-2025-30145

8 месяцев назад

GeoServer is an open source server that allows users to share and edit geospatial data. Malicious Jiffle scripts can be executed by GeoServer, either as a rendering transformation in WMS dynamic styles or as a WPS process, that can enter an infinite loop to trigger denial of service. This vulnerability is fixed in 2.27.0, 2.26.3, and 2.25.7. This vulnerability can be mitigated by disabling WMS dynamic styling and the Jiffle process.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-gr67-pwcv-76gf

8 месяцев назад

GeoServer Infinite Loop Vulnerability in Jiffle process

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-30145

GeoServer is an open source server that allows users to share and edit geospatial data. Malicious Jiffle scripts can be executed by GeoServer, either as a rendering transformation in WMS dynamic styles or as a WPS process, that can enter an infinite loop to trigger denial of service. This vulnerability is fixed in 2.27.0, 2.26.3, and 2.25.7. This vulnerability can be mitigated by disabling WMS dynamic styling and the Jiffle process.

CVSS3: 7.5
0%
Низкий
8 месяцев назад
github логотип
GHSA-gr67-pwcv-76gf

GeoServer Infinite Loop Vulnerability in Jiffle process

CVSS3: 7.5
0%
Низкий
8 месяцев назад

Уязвимостей на страницу