Known Vulnerabilities for Spring Authorization Server by VMware
Listed below are 6 of the newest known vulnerabilities associated with "Spring Authorization Server" by "VMware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-59355 json | In versions of Spring Authorization Server 1.5.0 through 1.5.7, the authorization endpoint performs insufficient validation o... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-59354 json | In versions of Spring Security's OAuth2 Authorization Server module 7.0.0 through 7.0.4, when Dynamic Client Registration is ... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-59316 json | Spring Authorization Server's default consent page renders user-controlled values without HTML entity encoding. When using th... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-47877 json | Spring Security Authorization Server's default consent page renders user-controlled values without HTML entity encoding. Spri... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-41008 json | Spring Security Authorization Server's authorization endpoint performs insufficient validation of the request_uri parameter. ... | Not Provided | 2026-06-10 | 2026-06-27 |
| CVE-2026-22752 json | Authentication bypass by primary weakness vulnerability in Spring Security Spring Authorization Server. This issue affects S... | Not Provided | 2026-07-16 | 2026-07-21 |