GeoServer Coverage REST API Server-Side Request Forgery Vulnerability

Vulnerability

A server-side request forgery (SSRF) vulnerability has been identified in GeoServer versions prior to 2.26.0. The issue arises in the Coverage REST API, specifically within the endpoint that allows file uploads from a specified URL. This functionality, available through the 'url' method, lacks proper validation, enabling potential exploitation by uploading malicious files from unverified sources.

Impact

Exploitation of this vulnerability allows for server-side request forgery, where an attacker can manipulate the server to make requests on their behalf, potentially leading to unauthorized data access or interaction with internal services.

Remediation

Users can upgrade to GeoServer version 2.26.0 or later to address this vulnerability.

Added: Jun 10, 2025, 4:52 PM
Updated: Jun 10, 2025, 4:52 PM

Vulnerability Rating

Custom Algorithm
spread
5.0
impact
0.6
exploitability
5.2
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.