pygeoapi
PyPI2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting pygeoapipage 1 of 1
- CVE-2026-42351HIGHCVSS 7.5EG 7.5✓ Fixed in 0.23.32026-05-08
vulnerable: 0.23.0, 0.23.1, 0.23.2
pygeoapi is a Python server implementation of the OGC API suite of standards. From version 0.23.0 to before version 0.23.3, a raw string path concatenation vulnerability in pygeoapi's STAC FileSystemProvider plugin can allow for requests t…
- CVE-2026-42352HIGHCVSS 8.6EG 8.6✓ Fixed in 0.23.32026-05-08
vulnerable: 0.23.0, 0.23.1, 0.23.2
pygeoapi is a Python server implementation of the OGC API suite of standards. From version 0.23.0 to before version 0.23.3, OGC API process execution requests can use the subscriber object to requests to internal HTTP services. This issue…
Check whether pygeoapi is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for pygeoapi CVEs against the assets you own.
Start Free Scan →