<div dir="auto"><div>Sorry for the very late reply Henning. </div><div dir="auto">Geoserver for GeoNode is safe thanks to Geofence, which doesn't allow those requests. </div><div dir="auto"><br></div><div dir="auto">The block is at the source code level, so it's ssfe whatever the Geofence configuration. </div><div><br></div><div dir="auto">Giovanni </div><div dir="auto"><br></div><div data-smartmail="gmail_signature"><div dir="ltr"><span><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt"><span style="color:rgb(34,34,34);font-family:Arial;font-size:11pt;white-space:pre-wrap">==</span><br></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt"><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">GeoServer Professional Services from the experts!</span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt"><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">Visit </span><a href="http://bit.ly/gs-services-us" target="_blank"><span style="font-size:11pt;font-family:Arial;color:rgb(17,85,204);vertical-align:baseline;white-space:pre-wrap">http://bit.ly/gs-services-us</span></a><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"> for more information.</span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">==</span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">Dott. Giovanni Allegri</span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt"><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">Technical Lead / Project Manager</span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt"><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">GeoSolutions Group</span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">phone: +39 0584 962313</span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">cell:      +39 345 2815774</span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt"><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><span><span style="font-size:11pt;vertical-align:baseline">fax:      +39 0584 1660272</span></span><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><a href="https://www.geosolutionsgroup.com/" target="_blank"><span style="font-size:11pt;font-family:Arial;color:rgb(17,85,204);vertical-align:baseline;white-space:pre-wrap">https://www.geosolutionsgroup.com/</span></a><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"> </span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><a href="http://twitter.com/geosolutions_it" target="_blank"><span style="font-size:11pt;font-family:Arial;color:rgb(17,85,204);vertical-align:baseline;white-space:pre-wrap">http://twitter.com/geosolutions_it</span></a><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"> </span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap">-------------------------------------------------------</span></p><span style="font-size:11pt;font-family:Arial;color:rgb(34,34,34);vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(0,0,0);background-color:transparent;font-style:italic;vertical-align:baseline;white-space:pre-wrap">Con riferimento alla normativa sul trattamento dei dati personali (Reg. UE 2016/679 - Regolamento generale sulla protezione dei dati “GDPR”), si precisa che ogni circostanza inerente alla presente email (il suo contenuto, gli eventuali allegati, etc.) è un dato la cui conoscenza è riservata al/i solo/i destinatario/i indicati dallo scrivente. Se il messaggio Le è giunto per errore, è tenuta/o a cancellarlo, ogni altra operazione è illecita. Le sarei comunque grato se potesse darmene notizia.</span><span style="font-size:11pt;font-family:Arial;color:rgb(0,0,0);background-color:transparent;font-style:italic;vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(0,0,0);background-color:transparent;font-style:italic;vertical-align:baseline;white-space:pre-wrap"><br></span><span style="font-size:11pt;font-family:Arial;color:rgb(0,0,0);background-color:transparent;font-style:italic;vertical-align:baseline;white-space:pre-wrap">This email is intended only for the person or entity to which it is addressed and may contain information that is privileged, confidential or otherwise protected from disclosure. We remind that - as provided by European Regulation 2016/679 “GDPR” - copying, dissemination or use of this e-mail or the information herein by anyone other than the intended recipient is prohibited. If you have received this email by mistake, please notify us immediately by telephone or e-mail.</span><span style="font-size:11pt;font-family:Arial;color:rgb(0,0,0);background-color:transparent;font-style:italic;vertical-align:baseline;white-space:pre-wrap"><br></span></span></div></div></div><br><div class="gmail_quote gmail_quote_container"><div dir="ltr" class="gmail_attr">Il ven 19 dic 2025, 17:19 Bredel, Henning via geonode-devel <<a href="mailto:geonode-devel@lists.osgeo.org">geonode-devel@lists.osgeo.org</a>> ha scritto:<br></div><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">



<div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
Hey,</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
GeoServer [disclosed a CVE](<a href="https://github.com/geoserver/geoserver/security" target="_blank" rel="noreferrer">https://github.com/geoserver/geoserver/security</a>) some weeks ago:</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
-  [CVE-2025-58360](<a href="https://github.com/geoserver/geoserver/security/advisories/GHSA-fjf5-xgmq-5525" target="_blank" rel="noreferrer">https://github.com/geoserver/geoserver/security/advisories/GHSA-fjf5-xgmq-5525</a>)</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
Is it safe to use 2.24.4 referenced by the geonode-project [0]. I am not aware of any fixes/patches in geonode-docker or elsewhere. Did I miss something?</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
Best</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
  Henning</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
[0] <a href="https://github.com/GeoNode/geonode-project/blob/f5824531e3cb23d7899d6446bac3530bbfb69b58/.env.sample#L13" target="_blank" rel="noreferrer">https://github.com/GeoNode/geonode-project/blob/f5824531e3cb23d7899d6446bac3530bbfb69b58/.env.sample#L13</a></div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div dir="ltr" style="font-family:Aptos,Arial,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
<br>
</div>
<div id="m_9209939927086808187ms-outlook-mobile-signature" style="color:inherit;background-color:inherit">
<div dir="ltr" style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
-- </div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)"><a href="https://www.google.com/maps/search/Klaus-Bungert-Stra%C3%9Fe+5+%0D%0A+%0D%0A40468+D%C3%BCsseldorf?entry=gmail&source=g">
</a>Henning Bredel</div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
adesso SE</div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
<a href="https://www.google.com/maps/search/Klaus-Bungert-Stra%C3%9Fe+5+%0D%0A+%0D%0A40468+D%C3%BCsseldorf?entry=gmail&source=g">Klaus-Bungert-Straße 5</a></div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)"><a href="https://www.google.com/maps/search/Klaus-Bungert-Stra%C3%9Fe+5+%0D%0A+%0D%0A40468+D%C3%BCsseldorf?entry=gmail&source=g">
40468 Düsseldorf</a></div>
<div dir="ltr" style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
<br>
</div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
T +49 211 740759-00</div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
M +49 151 56463626</div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
E <a href="mailto:henning.bredel@adesso.de" target="_blank" rel="noreferrer">henning.bredel@adesso.de</a></div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
<a href="http://www.adesso.de" target="_blank" rel="noreferrer">www.adesso.de</a></div>
<div style="font-family:Arial,Arial,Helvetica,sans-serif;font-size:10pt;color:rgb(0,0,0)">
<a href="http://blog.adesso.de" target="_blank" rel="noreferrer">blog.adesso.de</a></div>
</div>

<font size="2">-------------------------------------------------------<br>     >>> business. people. technology. <<<<br>-------------------------------------------------------<br><br>adesso SE mit Sitz in Dortmund<br>Vorstand: Mark Lohweber (Vors.), Benedikt Bonnmann, Kristina Gerwert, Michael Knopp,<br>Andreas Prenneis<br>Vorsitzender des Aufsichtsrates: Prof. Dr. Volker Gruhn<br>Amtsgericht Dortmund HRB 20663</font><br>












</div>

_______________________________________________<br>
geonode-devel mailing list<br>
<a href="mailto:geonode-devel@lists.osgeo.org" target="_blank" rel="noreferrer">geonode-devel@lists.osgeo.org</a><br>
<a href="https://lists.osgeo.org/mailman/listinfo/geonode-devel" rel="noreferrer noreferrer" target="_blank">https://lists.osgeo.org/mailman/listinfo/geonode-devel</a><br>
</blockquote></div>