U.S. CISA adds an OSGeo GeoServer flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 12, 09:24 UTC · Dec 12, 2025Exploit / PoC in the wildCVE-2025-58360CVE-2024-3640160
CISA adds OSGeo GeoServer GeoTools bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 16, 14:57 UTC · Jul 16, 2024Exploit / PoC in the wildCVE-2024-3640160
Multiple malware families delivered exploiting GeoServer GeoTools flaw CVE-2024Security Affairs·Sep 9, 06:41 UTC · Sep 9, 2024Malware in the wildCVE-2024-3640160
December 2025 CVE Landscape: 22 Critical Vulnerabilities Mark 120% Surge, React2Shell Dominates Threat ActivityRecorded Future·Jan 13, 00:00 UTC · Jan 13, 2026Vulnerability in the wildCVE-2025-55182CVE-2025-20393CVE-2025-8110+1 CVEs60
CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV CatalogThe Hacker News·Dec 12, 05:04 UTC · Dec 12, 2025Exploit / PoC in the wildCVE-2025-58360CVE-2024-3640160
CISA Adds Citrix NetScaler CVE-2025-5777 to KEV Catalog as Active Exploits Target EnterprisesThe Hacker News·Jul 18, 04:54 UTC · Jul 18, 2025Exploit / PoC in the wildCVE-2025-5777CVE-2023-4966CVE-2025-6543+1 CVEs60
GeoServer Vulnerability Targeted by Hackers to Deliver Backdoors and Botnet MalwareThe Hacker News·Sep 8, 07:56 UTC · Sep 8, 2024Vulnerability in the wildCVE-2024-36401CVE-2021-20123CVE-2021-2012460
CISA: Patch Critical GeoServer GeoTools Bug NowInfosecurity Magazine·Jul 17, 09:30 UTC · Jul 17, 2024Vulnerability in the wildCVE-2024-3640160
CISA Warns of Actively Exploited RCE Flaw in GeoServer GeoTools SoftwareThe Hacker News·Jul 17, 05:14 UTC · Jul 17, 2024Vulnerability in the wildCVE-2024-36401CVE-2024-36404CVE-2024-2951060