Loading
Generated remediation guidance and an executive summary. No account required.
GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. GeoNode is vulnerable to an XML External Entity (XXE) injection in the style upload functionality of GeoServer leading to Arbitrary File Read. This issue has been patched in version 4.0.3.
Use CWE-611, Geosolutionsgroup vendor hub and Geonode product page to widen CVE-2023-26043 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-42439, CVE-2023-40017 and CVE-2023-28442 for nearby disclosures in the same product family.