Geonetwork
1 CVEs tracked since 2006. Since Oct 2006, none of them reached CISA KEV.
Geonetwork CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2006-10 | 1 | 0 |
Products
The products that kept showing up in Geonetwork's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 7 most recently published vulnerabilities affecting Geonetwork.
- CVE-2026-55864GeoNetwork: Unauthenticaded Server-Side Request Forgery in SLD Tool—
- CVE-2026-63219Unauthenticated file upload via missing authorization on formatter upload endpoint8.6
- CVE-2026-58400GeoNetwork vulnerable to Remote Code Execution via unsafe Saxon XSLT processor configuration in formatter9.1
- CVE-2026-53573core-geonetwork has an Open Redirect Bypass—
- CVE-2022-50899Geonetwork 4.2.0 - XML External Entity (XXE)6.5
- CVE-2024-32037GeoNetwork vulnerable to search end-point information disclosure in response headers—
- CVE-2006-5513SQL injection vulnerability in GeoNetwork opensource before 2.0.3 allows remote attackers to execute arbitrary SQL commands, and complete a login, via unspecified vectors.7.5
The record
- Peak rank
- #160 in Oct 2006
- Busiest month shown
- Oct 2006, 1 CVEs
- Months with a KEV entry
- 0 since Oct 2006
- Monthly snapshots
- 1 since 2006