THEMETASEC

Cybersecurity News, Aggregated

GeoServer Zero-Day Is Already Being Probed. That’s the Problem

Security Affairs · 12 hours ago Vuln

GeoServer faces an unpatched zero-day enabling SQL injection and potentially RCE, with attackers already probing exposed systems. A newly disclosed GeoServer zero-day is already attracting active exploitation attempts, and there is no patch available yet. Organisations running the open-source geospatial platform should check their exposure. A security researcher with the handler q1uf3ng discloded the vulnerability […]

Read full story at Security Affairs →