Broadcom / Spring Data Commons
7 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-41721 | Spring Data Commons Denial of Service via Data Binding | MEDIUM | 5.9 | Jun 9, 2026 |
| CVE-2026-41716 | Spring Data web support unbounded negative-result cache keyed on attacker-supplied property names | HIGH | 7.5 | Jun 9, 2026 |
| CVE-2026-41711 | Potential Denial of Service through crafted Sort Parameters | MEDIUM | 5.9 | Jun 9, 2026 |
| CVE-2026-41695 | Denial of Service in Spring Data Commons Property Path Resolution | HIGH | 7.5 | Jun 9, 2026 |
| CVE-2018-1259 | spring-data-commons: XXE with Spring Data’s XMLBeam integration | HIGH | 7.5 | May 11, 2018 |
| CVE-2018-1274 | spring-data-commons: Unlimited path depth in PropertyPath.java allow remote attackers to cause a denial of service | HIGH | 7.5 | Apr 18, 2018 |
| CVE-2018-1273 KEV | spring-data-commons: Improper neutralization of special elements allow remote attackers to execute code via crafted requests | CRITICAL | 9.8 | Apr 11, 2018 |
Showing 1 to 7 of 7 CVEs