VMware / Spring Cloud Function
11 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-59301 | Potential for logging sensitive data in Spring Cloud Function Azure | MEDIUM | 4.9 | Aug 27, 2026 |
| CVE-2026-59300 | Potential for logging sensitive data in Spring Cloud Function AWS | LOW | 3.5 | Aug 27, 2026 |
| CVE-2026-59299 | Composition lookup can potentially poison base function in Spring Cloud Function | LOW | 3.5 | Aug 27, 2026 |
| CVE-2026-59298 | Potential for improper filtering of HTTP headers in Spring Cloud Function | LOW | 3.5 | Aug 27, 2026 |
| CVE-2026-59297 | Spring Cloud Function can incorrectly determine if URI is secure | LOW | 3.5 | Aug 27, 2026 |
| CVE-2026-59291 | Potential arbitrary file read and SSRF vulnerability in Spring Cloud Function | MEDIUM | 5.5 | Aug 27, 2026 |
| CVE-2026-40990 | Unbounded cache for function definitions | MEDIUM | 6.5 | Jun 1, 2026 |
| CVE-2026-40989 | Self Routing guard bypassed via function composition | MEDIUM | 6.5 | Jun 1, 2026 |
| CVE-2024-22271 | Spring Cloud Function Web DOS Vulnerability | HIGH | 8.8 | Jul 9, 2024 |
| CVE-2022-22979 | In Spring Cloud Function versions prior to 3.2.6, it is possible for a user who directly interacts with framework provided lookup functionality to cause a deni… | HIGH | 7.5 | Jun 21, 2022 |
| CVE-2022-22963 KEV | spring-cloud-function: Remote code execution by malicious Spring Expression | CRITICAL | 9.8 | Apr 1, 2022 |
Showing 1 to 11 of 11 CVEs