Blog · corpus.blog/blogs/spring.io/posts
spring.io
spring.io
2026
25 Sept 2026
25 Sept 2026
24 Sept 2026
21 Sept 2026
9 Sept 2026
21 Aug 2026
20 Aug 2026
cve-2026-59282 - MEDIUM - Spring Framework Denial of Service via Unbounded List Growth in Data Bindingoriginal ↗
20 Aug 2026
20 Aug 2026
cve-2026-41707 - HIGH - Spring Security DPoPProofJwtDecoderFactory vulnerable to DPoP Proof Replayoriginal ↗
20 Aug 2026
cve-2026-47836 - HIGH - Spring Cloud Config Server Susceptible To TOCTOU Attack When Using SVNoriginal ↗
20 Aug 2026
cve-2026-47837 - MEDIUM - Spring Cloud Config Server Monitor Endpoint Does Not Validate Webhook Requestsoriginal ↗
20 Aug 2026
20 Aug 2026
cve-2026-47842 - MEDIUM - Deterministic AES/CBC Encryption in Spring Security AesBytesEncryptor Allows Ciphertext Correlationoriginal ↗
20 Aug 2026
cve-2026-47843 - LOW - Reactor Netty may incorrectly route traffic due to DNS resolver reuseoriginal ↗
20 Aug 2026
cve-2026-47845 - MEDIUM - Reactor Netty HTTP Server may incorrectly evaluate proxy addressesoriginal ↗
20 Aug 2026
20 Aug 2026
cve-2026-47849 - HIGH - Spring Data REST allows mutation of identifier and version properties via JSON Patchoriginal ↗
20 Aug 2026
cve-2026-47850 - MEDIUM - Spring Data REST allows mutation of the version property of immutable aggregates via PUToriginal ↗
20 Aug 2026
cve-2026-47851 - HIGH - Unbounded recursion over attacker-controlled PDF outline tree in Spring AI PDF Document Readeroriginal ↗
20 Aug 2026
cve-2026-47852 - HIGH - Predictable cache directory location allows local ONNX model substitution in Spring AIoriginal ↗
20 Aug 2026
cve-2026-47856 - MEDIUM - JsonToObjectTransformer resolves the json__TypeId__ message header to an arbitrary class without an allow-listoriginal ↗
20 Aug 2026
cve-2026-47857 - MEDIUM - Reactor Core windowTimeout fair-backpressure stream hang due to 20-bit index wrap-aroundoriginal ↗
20 Aug 2026
cve-2026-47859 - MEDIUM - Unbounded memory allocation in RFC6587SyslogDeserializer (octet-counted framing) — remote DoSoriginal ↗
20 Aug 2026
cve-2026-47860 - MEDIUM - Unbounded decompression of attacker-supplied compressed message bodiesoriginal ↗
20 Aug 2026
cve-2026-47861 - MEDIUM - UDP adapter sends ack to attacker-supplied host:port parsed from packet body, even when acknowledge=falseoriginal ↗
20 Aug 2026
cve-2026-47863 - MEDIUM - Reactor Core bufferTimeout fair-backpressure pipeline permanently hangs when upstream delivers items during an active flushoriginal ↗
20 Aug 2026
cve-2026-47864 - MEDIUM - Unsafe Java deserialization in SerializingHttpMessageConverter — remote code executionoriginal ↗
20 Aug 2026
cve-2026-47862 - MEDIUM - ZipTransformer uses file_name header to build workDirectory path without sanitizationoriginal ↗
20 Aug 2026
20 Aug 2026
cve-2026-47877 - HIGH - Spring Security Authorization Server Default Consent Page is vulnerable to Cross-Site Scripting (XSS)original ↗
20 Aug 2026
cve-2026-47878 - MEDIUM - Unsafe Java deserialization in DefaultExecutionContextSerializer without class allowlistoriginal ↗
20 Aug 2026
cve-2026-47874 - MEDIUM - Reactor Netty HTTP Server Denial of Service With Pipelined Requestsoriginal ↗
20 Aug 2026
cve-2026-47881 - MEDIUM - Denial of Service in Spring Batch FlatFileItemReader via Malformed Input Fileoriginal ↗
20 Aug 2026
20 Aug 2026
cve-2026-47880 - MEDIUM - DefaultJmsHeaderMapper copies all JMS user properties into MessageHeaders without excluding framework-significant namesoriginal ↗
20 Aug 2026
cve-2026-47885 - MEDIUM - Spring Framework maxPartSize Ignored in PartEventHttpMessageReaderoriginal ↗
20 Aug 2026
cve-2026-47886 - MEDIUM - Spring Framework Denial of Service via Unbounded Exponentiation in SpEL Expressionsoriginal ↗
20 Aug 2026
20 Aug 2026
cve-2026-47888 - MEDIUM - Spring Framework Memory Leak via SETUP Frame in RSocketMessageHandleroriginal ↗
20 Aug 2026
cve-2026-47889 - MEDIUM - Spring Framework sameSite Attribute Dropped in JettyCoreServerHttpResponseoriginal ↗
20 Aug 2026
cve-2026-47890 - LOW - Spring Framework Server Sent Event stream corruption while rendering fragmentsoriginal ↗
20 Aug 2026
cve-2026-47892 - MEDIUM - Spring Framework Header Predicate Bypass in WebFlux Functional Endpointsoriginal ↗
20 Aug 2026
cve-2026-47893 - LOW - Spring Framework Request Headers Included in Exception Reasons in HandshakeWebsocketServiceoriginal ↗
20 Aug 2026
cve-2026-47894 - MEDIUM - Spring Cloud Config Server Native Environment Repository Exposureoriginal ↗
20 Aug 2026
cve-2026-59270 - CRITICAL - Spring Security embedded UnboundID LDAP server exposes well-known administrative bind DN on all network interfacesoriginal ↗
20 Aug 2026
20 Aug 2026
20 Aug 2026
cve-2026-59272 - MEDIUM - Log4j2 AmqpAppender disables TLS hostname verification by defaultoriginal ↗
20 Aug 2026
cve-2026-59274 - MEDIUM - Unbounded decompression in UnZipTransformer enables zip-bomb DoSoriginal ↗
20 Aug 2026
cve-2026-59275 - MEDIUM - Remote JVM termination: nested-array Java deserialization bypasses allowlist, triggers StackOverflowError, default JavaLangErrorHandler calls System.exit(99)original ↗
20 Aug 2026
cve-2026-59278 - MEDIUM - In Spring for Apache Kafka, SSRF via DNS resolution triggered by untrusted java.net types in header mapper default trusted packagesoriginal ↗
20 Aug 2026
cve-2026-59279 - HIGH - Unbounded persistent session allocation via repeated initialize requestsoriginal ↗
20 Aug 2026
cve-2026-59280 - MEDIUM - Spring Framework Path Traversal via Backslash in SpringTemplateLoaderoriginal ↗
20 Aug 2026
cve-2026-59276 - MEDIUM - Timing Attack via Non-Constant-Time Comparison of Sensitive Valuesoriginal ↗
20 Aug 2026
cve-2026-59277 - LOW - Spring Security InetAddressMatchers Incomplete Internal Network Classificationoriginal ↗
20 Aug 2026
11 May 2026