Vulnerabilities > Geoserver > Geoserver > 2.10.5

DATE CVE VULNERABILITY TITLE RISK
2023-06-12 CVE-2023-35042 Unspecified vulnerability in Geoserver
GeoServer 2, in some configurations, allows remote attackers to execute arbitrary code via java.lang.Runtime.getRuntime().exec in wps:LiteralData within a wps:Execute request, as exploited in the wild in June 2023.
network
low complexity
geoserver
critical
9.8