CVE-2026-55848 | mapfish mapfish-print up to 4.0.4 GML Parser GmlLayer.java url server-side request forgery

SecurityVulns

A vulnerability was found in mapfish mapfish-print up to 3.28.29/3.30.31/3.31.23/3.33.15/4.0.4 and classified as problematic. The affected element is an unknown function of the file core/src/main/java/org/mapfish/print/map/geotools/GmlLayer.java of the component GML Parser. Such manipulation of the argument url leads to server-side request forgery.

This vulnerability is traded as CVE-2026-55848. The attack may be launched remotely. There is no exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More