Seinwacht

Meldingen

2 meldingen uit primaire bronnen. Filter op ernst, type of vendor, of zoek op een CVE-nummer of productnaam. Bulkpublicaties (BSI-updates, Patch Tuesday) staan als één regel.

Ernst
Type
Soort bron
Vendor
Sorteren
Wissen

Koppelen

RSS-feed met deze filtersDownload als CSV

Zet de feed in je RSS-lezer, of in Slack (/feed subscribe) of Teams (RSS-connector), dan komen nieuwe meldingen vanzelf in je teamkanaal.

Liever zelf bouwen? Dezelfde selectie als JSON, of de volledige API-specificatie (OpenAPI).

  • CVE-2026-58400: core-geonetwork, actief misbruikt

    ENISA EU Vulnerability DatabaseAdvisory

    GeoNetwork is a catalog application to manage spatially referenced resources. Prior to versions 4.4.12 and 4.2.17, the Saxon XSLT processor used to render formatters is configured without secure processing (`FEATURE_SECURE_PROCESSING`) and without disabling Java extension functions (`ALLOW_EXTERNAL_FUNCTIONS`). Any sty

    Actief misbruiktCVSS 9,1EPSS 1%CVE-2026-58400geonetwork
    55hoog
  • CVE-2026-63219: core-geonetwork, actief misbruikt

    ENISA EU Vulnerability DatabaseAdvisory

    GeoNetwork is a catalog application to manage spatially referenced resources. Prior to versions 4.4.12 and 4.2.17, the API endpoint for creating a new formatter via file upload is unprotected and allows the upload of external uncontrolled files. An unauthenticated attacker can upload arbitrary `.xsl` or `.zip` formatte

    Actief misbruiktCVSS 8,6CVE-2026-63219geonetwork
    48hoog
Meldingen | Seinwacht