CVE-2025-30145: GeoServer Infinite Loop Vulnerability in Jiffle process
Malicious Jiffle scripts can be executed by GeoServer, either as a rendering transformation in WMS dynamic styles or as a WPS process, that can enter an infinite loop to trigger denial of service.
References
Code Behaviors & Features
Detect and mitigate CVE-2025-30145 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →