SPIN Unprocessed
Source The Hacker News feeds.feedburner.com Media Center
September 2, 2026 ai_technology cybersecurity

GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends

View original on thehackernews.com

Overview

Two vulnerabilities in GeoNetwork can be chained to achieve unauthenticated remote code execution (RCE) on the open-source geospatial metadata catalog, which sits behind many government and agency geoportals. The project shipped fixes in versions 4.4.12 and 4.2.17 on July 8, 2026, and published the vulnerability details on August 31. GeoNetwork originated at the United Nations Food and

SpinGraph analysis pending — check back after processing.

Ask AI about this story

Opens with the SpinGraph .md URL and structured context — one click, prompt included.

More from The Hacker News

View all →

Markdown (.md) · JSON-LD schema (.json) · Machine-readable for AI & GEO