Skip to content

Known CVE

GeoServer - Missing Authorization on REST API Index

GeoServer contains a missing authorization vulnerability that allows unauthorized access to the REST API Index page, potentially exposing sensitive configuration information.

CVE-2025-27505

Medium2025CVSS 5.3CWE-862

cve2025 · geoserver · misconfig · osgeo · vkev · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website