18 Total advisories
18 Vulnerabilities
0 Malware
Vulnerabilities
NONE 0.0
CVE-2026-22741
Spring MVC and WebFlux applications are vulnerable to cache poisoning when resolving static resources.
MEDIUM 5.3
CVE-2026-22745
Spring MVC and WebFlux applications are vulnerable to Denial of Service attacks when resolving static resources
LOW 2.6
CVE-2026-22735
Spring MVC and WebFlux has Server Sent Event stream corruption
MEDIUM 5.9
CVE-2026-22737
Spring Framework Improper Path Limitation with Script View Templates
MEDIUM 5.9
CVE-2025-41242
Spring Framework MVC Applications Path Traversal Vulnerability
HIGH 7.5
CVE-2020-5398
RFD attack via Content-Disposition header sourced from request input by Spring MVC or Spring WebFlux Application
HIGH 7.5
CVE-2024-38816
Path traversal vulnerability in functional web frameworks
CRITICAL 9.8
CVE-2022-22965
Remote Code Execution in Spring Framework
CRITICAL 9.1
CVE-2023-20860
Spring Framework is vulnerable to security bypass via mvcRequestMatcher pattern mismatch
HIGH 7.5
CVE-2024-38819
Spring Framework Path Traversal vulnerability
MEDIUM 5.3
CVE-2024-38828
Spring MVC controller vulnerable to a DoS attack
HIGH 7.5
CVE-2023-34053
Spring Framework vulnerable to denial of service
UNKNOWN
CVE-2014-0054
Cross-Site Request Forgery in Spring Framework
UNKNOWN
CVE-2014-3625
Improper Limitation of a Pathname to a Restricted Directory in Spring Framework
UNKNOWN
CVE-2014-1904
Improper Neutralization of Input During Web Page Generation in Spring Framework
MEDIUM 5.3
CVE-2020-5397
CSRF attack via CORS preflight requests with Spring MVC or Spring WebFlux
HIGH 7.5
CVE-2016-9878
Pivotal Spring Framework Paths provided to the ResourceServlet were not properly sanitized
HIGH 8.8
CVE-2014-0225
Improper Restriction of XML External Entity Reference in Spring Framework
Ready to move
Start Securing
Free, no credit card | First findings in minutes