GeoServer Vulnerability (CVE-2024-36401) Exploited in U.S. Agency Breach and Earth Baxia Campaigns
A critical remote code execution (RCE) vulnerability in GeoServer (CVE-2024-36401) is being actively exploited, impacting a U.S. federal agency and campaigns by the China-backed Earth Baxia APT.