Release notes
Bug
GEOS-11678 CVE-2025-23043 XML External Entity Injection Vulnerability in features-templating Extension
GEOS-12092 DescribeFeatureType fails to render a single option restriction in JSON format
GEOS-12101 Workspace styles not persisted to disk after restore
GEOS-12116 Workspace admin pager shows incorrect total count for security-filtered workspaces
Improvement
GEOS-12045 Allow disabling specific OGC service versions
GEOS-12098 Rename JWT Header assembly so it is collected for nightly downloads
GEOS-12105 DiskQuotaConfigPanel: expose JDBCConfiguration.schema in the UI
GEOS-12111 LDAP TLS pooled hostname