Known Vulnerabilities for Spring Ai by Vmware
Listed below are 10 of the newest known vulnerabilities associated with "Spring Ai" by "Vmware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-82265 json | Zipkin through 3.6.1 exposes Spring Boot Actuator endpoints on the tracing API port without authentication, allowing unauthen... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-73244 json | kkFileView is a universal file online preview project based on Spring Boot. Prior to 5.0.1, the unauthenticated POST /listFil... | Not Provided | 2026-08-11 | 2026-08-13 |
| CVE-2026-73243 json | kkFileView is a universal file online preview project based on Spring Boot. Prior to 5.0.1, the unauthenticated GET /addTask ... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-68494 json | The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint bypass i... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-63490 json | Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.s... | Not Provided | 2026-08-20 | 2026-08-25 |
| CVE-2026-62242 json | Spring Boot Admin Server before 4.1.2 contains a server-side request forgery vulnerability that allows unauthenticated attack... | Not Provided | 2026-07-13 | 2026-07-15 |
| CVE-2026-59355 json | In versions of Spring Authorization Server 1.5.0 through 1.5.7, the authorization endpoint performs insufficient validation o... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-59354 json | In versions of Spring Security's OAuth2 Authorization Server module 7.0.0 through 7.0.4, when Dynamic Client Registration is ... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-59328 json | Spring Tools for Eclipse renders Spring Boot starter wizard dependency tooltips in a native embedded browser (SWT Browser) wi... | Not Provided | 2026-07-30 | 2026-07-30 |
| CVE-2026-59327 json | Spring Tools for Eclipse stores the Spring Boot DevTools remote secret (spring.devtools.remote.secret) as a plain string attr... | Not Provided | 2026-07-30 | 2026-07-30 |