What is CVE-2026-58400?
CVE-2026-58400 is a vulnerability classified as Improper Control of Generation of Code ('Code Injection') and Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection'), affecting core-geonetwork (affected versions: >= 4.3.0, < 4.4.12 and < 4.2.17). This vulnerability is rated Critical, with a CVSS score of 9.1. Current sources do not report this vulnerability as exploited.