
CISA orders feds to patch actively exploited Geoserver flaw
Published on December 12, 2025
CISA has ordered U.S. federal agencies to patch a critical GeoServer vulnerability now actively exploited in XML External Entity (XXE) injection attacks. [...]
