Hi Luciano, Please see Responsible Disclosure of Security Issues <https://geoserver.org/comm/#:~:text=Responsible%20Disclosure%20of%20Security%20Issues,%40lists.osgeo.org)> .
Peter On Thu, 15 Jun 2023 at 12:01, Luciano (JIRA) via Geoserver-devel < geoserver-devel@lists.sourceforge.net> wrote: > Luciano > <https://osgeo-org.atlassian.net/secure/ViewProfile.jspa?accountId=712020%3Aa7f40503-247e-4765-ae2e-17e14bb4d811> > *created* an issue > > GeoServer > <https://osgeo-org.atlassian.net/browse/GEOS?atlOrigin=eyJpIjoiMzNkMWRiNTU2NjUzNGU5MDg0M2NhMWRhZGNlYWYzNDMiLCJwIjoiaiJ9> > / [image: Bug] > <https://osgeo-org.atlassian.net/browse/GEOS-11027?atlOrigin=eyJpIjoiMzNkMWRiNTU2NjUzNGU5MDg0M2NhMWRhZGNlYWYzNDMiLCJwIjoiaiJ9> > GEOS-11027 > <https://osgeo-org.atlassian.net/browse/GEOS-11027?atlOrigin=eyJpIjoiMzNkMWRiNTU2NjUzNGU5MDg0M2NhMWRhZGNlYWYzNDMiLCJwIjoiaiJ9> > CVE-2023-35402 > <https://osgeo-org.atlassian.net/browse/GEOS-11027?atlOrigin=eyJpIjoiMzNkMWRiNTU2NjUzNGU5MDg0M2NhMWRhZGNlYWYzNDMiLCJwIjoiaiJ9> > Issue Type: [image: Bug] Bug > Assignee: Unassigned > Created: 15/Jun/23 11:58 AM > Priority: [image: Highest] Highest > Reporter: Luciano > <https://osgeo-org.atlassian.net/secure/ViewProfile.jspa?accountId=712020%3Aa7f40503-247e-4765-ae2e-17e14bb4d811> > > I did not found any comments/release note about the new critical > vulnerability CVE-2023-35042 > > Do you have any info to share? Which products are affected? Are there any > mitigation? If we dont use WPS service we can Say that we are affected? > > Tks > > Luciano > [image: Add Comment] > <https://osgeo-org.atlassian.net/browse/GEOS-11027#add-comment?atlOrigin=eyJpIjoiMzNkMWRiNTU2NjUzNGU5MDg0M2NhMWRhZGNlYWYzNDMiLCJwIjoiaiJ9> > Add > Comment > <https://osgeo-org.atlassian.net/browse/GEOS-11027#add-comment?atlOrigin=eyJpIjoiMzNkMWRiNTU2NjUzNGU5MDg0M2NhMWRhZGNlYWYzNDMiLCJwIjoiaiJ9> > > Get Jira notifications on your phone! Download the Jira Cloud app for > Android > <https://play.google.com/store/apps/details?id=com.atlassian.android.jira.core&referrer=utm_source%3DNotificationLink%26utm_medium%3DEmail> > or iOS > <https://itunes.apple.com/app/apple-store/id1006972087?pt=696495&ct=EmailNotificationLink&mt=8> > ------------------------------ > This message was sent by Atlassian Jira (v1001.0.0-SNAPSHOT#100226- > sha1:d46780b) > [image: Atlassian logo] > _______________________________________________ > Geoserver-devel mailing list > Geoserver-devel@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/geoserver-devel >
_______________________________________________ Geoserver-devel mailing list Geoserver-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/geoserver-devel