Launch Week Day 1: Announcing Security Design Review
maven

org.springframework:spring-core

View on maven registry
18 Total advisories
18 Vulnerabilities
0 Malware

Vulnerabilities

HIGH 7.5
Maven

CVE-2024-22233

Spring Framework server Web DoS Vulnerability

HIGH 7.5
Maven

CVE-2025-41249

Spring Framework annotation detection mechanism may result in improper authorization

UNKNOWN
Maven

CVE-2009-1190

Spring Framework Inefficient Regular Expression Complexity

UNKNOWN
Maven

CVE-2014-3578

Improper Limitation of a Pathname to a Restricted Directory in Spring Framework

UNKNOWN
Maven

CVE-2011-2730

Improper Neutralization of Directives in Dynamically Evaluated Code in Spring Framework

HIGH 7.5
Maven

CVE-2018-1272

Possible privilege escalation in org.springframework:spring-core

MEDIUM 4.3
Maven

CVE-2021-22060

Log entry injection in Spring Framework

MEDIUM 6.5
Maven

CVE-2018-1257

Denial of Service in org.springframework:spring-core

UNKNOWN
Maven

CVE-2011-2894

Spring Framework and Spring Security vulnerable to Deserialization of Untrusted Data

HIGH 7.5
Maven

CVE-2016-5007

Spring Security and Spring Framework may not recognize certain paths that should be protected

UNKNOWN
Maven

CVE-2015-0201

Moderate severity vulnerability that affects org.springframework:spring-core

HIGH 7.5
Maven

CVE-2018-15756

Denial of Service in Spring Framework

MEDIUM 4.3
Maven

CVE-2021-22096

Improper Output Neutralization for Logs in Spring Framework

MEDIUM 5.9
Maven

CVE-2018-11040

Moderate severity vulnerability that affects org.springframework:spring-core

MEDIUM 5.9
Maven

CVE-2018-1271

Path Traversal in org.springframework:spring-core

MEDIUM 5.3
Maven

CVE-2018-1199

Improper Input Validation in org.springframework.security:spring-security-core, org.springframework.security:spring-security-core , and org.springframework:spring-core

HIGH 8.8
Maven

CVE-2018-1258

Spring Framework when used in combination with any versions of Spring Security contains an authorization bypass

HIGH 8.6
Maven

CVE-2015-5211

Files or Directories Accessible to External Parties in org.springframework:spring-core

Ready to move

Start Securing

Free, no credit card | First findings in minutes