📦 Spring Framework

by Vmware

🔍 What is Spring Framework?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-22259

HIGH CVSS 8.1 Mar 16, 2024

Spring Framework applications using UriComponentsBuilder to parse external URLs with host validation are vulnerable to open redirect and SSRF attacks. Attackers can manipulate URLs to bypass validatio...

CVE-2024-22233

HIGH CVSS 7.5 Jan 22, 2024

This vulnerability in Spring Framework allows attackers to cause denial-of-service (DoS) conditions by sending specially crafted HTTP requests. Applications are affected if they use Spring MVC with Sp...

CVE-2021-22118

HIGH CVSS 7.8 May 27, 2021

This vulnerability allows a locally authenticated malicious user to escalate privileges in Spring Framework WebFlux applications by manipulating temporary storage directories. Attackers can read or mo...