GeoServer contains a missing authorization vulnerability that allows unauthorized access to the REST API Index page, potentially exposing sensitive configuration information.
id: CVE-2025-27505
info:
name: GeoServer - Missing Authorization on REST API Index
author: secu
...