← Back to feed Search feed

Spring Framework vulnerabilities

10 entries matching spring — updated 2026-09-18 · vulnfeed

CVE / IDTitleSeverityCVSSEPSSSourceDate
CVE-2026-84860ScadaLTS 2.8.1-release-candidate build 0 is affected by an Authorization Bypass Spring Security gates DWR endpoints bHIGH8.841%ileNVD2026-09-16
CVE-2026-84859ScadaLTS 2.8.1-release-candidate build 0 is affected by an Authenticated Blind SQL Injection The /api/events/search eMEDIUM6.522%ileNVD2026-09-16
CVE-2026-88620SmartAdmin API Java17 SpringBoot3 version 3.30.0 contains an improper authorization vulnerability in the /employee/queryUNKNOWN9%ileNVD2026-09-15
CVE-2026-91145Activiti through 7.1.0.M6 fails to validate hash-brace deferred expressions in process variables, allowing attackers to HIGH7.116%ileNVD2026-09-14
CVE-2026-90563A vulnerability was determined in maliangnansheng bbs-springboot 3.0.0. This affects the function utils.toToc of the filMEDIUM5.111%ileNVD2026-09-13
CVE-2026-90594A vulnerability was identified in wxiaoqi Spring-Cloud-Platform 3.0.1/3.1.0. This vulnerability affects the function PerLOW2.112%ileNVD2026-09-13
CVE-2026-90595A security flaw has been discovered in wxiaoqi Spring-Cloud-Platform 1.0/2.2/3.0. This issue affects the function OnlineLOW2.112%ileNVD2026-09-13
CVE-2026-90598A vulnerability was detected in jaygajera17 E-commerce-project-springBoot up to 5e74a46b4b70623d0e4a0c9c4aee3bd1777185d2LOW2.114%ileNVD2026-09-13
CVE-2026-69854Spring Cloud Azure Elevation of Privilege VulnerabilityCRITICAL9.049%ileMicrosoft2026-09-08
CVE-2026-50338Azure Spring Apps Elevation of Privilege VulnerabilityHIGH8.243%ileMicrosoft2026-07-14