A vulnerability has been found in GeoTools up to 29.5/30.3/31.1 and classified as very critical. This vulnerability affects unknown code. The manipulation leads to improper neutralization of directives in dynamically evaluated code (‘eval injection’).

This vulnerability was named CVE-2024-36404. The attack can be initiated remotely. There is no exploit available.

It is recommended to upgrade the affected component.