Known Vulnerabilities for Spring Cloud by Spring
Listed below are 10 of the newest known vulnerabilities associated with "Spring Cloud" by "Spring".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-90595 json | A security flaw has been discovered in wxiaoqi Spring-Cloud-Platform 1.0/2.2/3.0. This issue affects the function OnlineContr... | Not Provided | 2026-09-13 | 2026-09-15 |
| CVE-2026-90594 json | A vulnerability was identified in wxiaoqi Spring-Cloud-Platform 3.0.1/3.1.0. This vulnerability affects the function Permissi... | Not Provided | 2026-09-13 | 2026-09-14 |
| CVE-2026-80515 json | In Eclipse Arrowhead versions from 5.0.0 to 5.2.1 the management-authorization gate that protects every /…/mgmt/… REST en... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-69854 json | Improper authentication in Spring Cloud Azure allows an unauthorized attacker to elevate privileges over a network. | Not Provided | 2026-09-08 | 2026-09-11 |
| CVE-2026-62242 json | Spring Boot Admin Server before 4.1.2 contains a server-side request forgery vulnerability that allows unauthenticated attack... | Not Provided | 2026-07-13 | 2026-07-15 |
| CVE-2026-59315 json | The Spring Cloud Config Monitor is susceptible to Denial of Service attacks via malicious payloads. Spring Cloud Config 5.0.0... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-59306 json | Potential for deserialization of untrusted types in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Strea... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-59305 json | Partition interceptor may be improperly added while sending message. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-59304 json | Improper caching of the original content type in Spring Cloud Stream Avro. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Str... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-59303 json | Dynamic destination cache size is not properly bound in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud S... | Not Provided | 2026-08-27 | 2026-08-28 |