Valtimo
Valtimo-Platform · 3 CVEs
CVE-2026-44516
HIGH
Valtimo: Sensitive data exposure through HTTP request/response logging in LoggingRestClientCustomizer
May 14, 2026
CVE-2026-42555
CRITICAL
Valtimo: SpEL injection via StandardEvaluationContext allows Remote Code Execution by admin users
May 14, 2026
CVE-2026-34164
MEDIUM
Valtimo: Sensitive data exposure through inbox message logging in InboxHandlingService
Apr 16, 2026
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-44516 | Valtimo: Sensitive data exposure through HTTP request/response logging in LoggingRestClientCustomizer | HIGH | 0.34% | May 14, 2026 |
| CVE-2026-42555 | Valtimo: SpEL injection via StandardEvaluationContext allows Remote Code Execution by admin users | CRITICAL | 0.82% | May 14, 2026 |
| CVE-2026-34164 | Valtimo: Sensitive data exposure through inbox message logging in InboxHandlingService | MEDIUM | 0.48% | Apr 16, 2026 |
Showing 1 to 3 of 3 CVEs