10 entries matching spring — updated 2026-09-18 · vulnfeed
| CVE / ID | Title | Severity | CVSS | EPSS | Source | Date |
|---|---|---|---|---|---|---|
| CVE-2026-84860 | ScadaLTS 2.8.1-release-candidate build 0 is affected by an Authorization Bypass Spring Security gates DWR endpoints b | HIGH | 8.8 | 41%ile | NVD | 2026-09-16 |
| CVE-2026-84859 | ScadaLTS 2.8.1-release-candidate build 0 is affected by an Authenticated Blind SQL Injection The /api/events/search e | MEDIUM | 6.5 | 22%ile | NVD | 2026-09-16 |
| CVE-2026-88620 | SmartAdmin API Java17 SpringBoot3 version 3.30.0 contains an improper authorization vulnerability in the /employee/query | UNKNOWN | — | 9%ile | NVD | 2026-09-15 |
| CVE-2026-91145 | Activiti through 7.1.0.M6 fails to validate hash-brace deferred expressions in process variables, allowing attackers to | HIGH | 7.1 | 16%ile | NVD | 2026-09-14 |
| CVE-2026-90563 | A vulnerability was determined in maliangnansheng bbs-springboot 3.0.0. This affects the function utils.toToc of the fil | MEDIUM | 5.1 | 11%ile | NVD | 2026-09-13 |
| CVE-2026-90594 | A vulnerability was identified in wxiaoqi Spring-Cloud-Platform 3.0.1/3.1.0. This vulnerability affects the function Per | LOW | 2.1 | 12%ile | NVD | 2026-09-13 |
| CVE-2026-90595 | A security flaw has been discovered in wxiaoqi Spring-Cloud-Platform 1.0/2.2/3.0. This issue affects the function Online | LOW | 2.1 | 12%ile | NVD | 2026-09-13 |
| CVE-2026-90598 | A vulnerability was detected in jaygajera17 E-commerce-project-springBoot up to 5e74a46b4b70623d0e4a0c9c4aee3bd1777185d2 | LOW | 2.1 | 14%ile | NVD | 2026-09-13 |
| CVE-2026-69854 | Spring Cloud Azure Elevation of Privilege Vulnerability | CRITICAL | 9.0 | 49%ile | Microsoft | 2026-09-08 |
| CVE-2026-50338 | Azure Spring Apps Elevation of Privilege Vulnerability | HIGH | 8.2 | 43%ile | Microsoft | 2026-07-14 |