An open API service providing security vulnerability metadata for many open source software ecosystems.

maven

org.springframework:spring-core

maven

Spring Core

View on github.com · View on repo1.maven.org

Security Advisories for org.springframework:spring-core in maven

Potential
Potential
High
about 1 year ago

Spring Framework Path Traversal vulnerability GSA_kwCzR0hTQS1nNXZyLXJncW0tdmY3OM4ABCoa

maven org.springframework:spring-webmvc, org.springframework:spring-webflux
Potential
Moderate
over 1 year ago

Spring Framework has Authorization Bypass for Case Sensitive Comparisons GSA_kwCzR0hTQS1xM3Y2LWhtMnYtcHc5Oc4ABB-q

maven org.springframework.security:spring-security-core
Potential
Moderate
over 1 year ago

Spring Framework DataBinder Case Sensitive Match Exception GSA_kwCzR0hTQS00Z2M3LTVqN2gtNHFwaM4ABAa0

maven org.springframework:spring-web, org.springframework:spring-context
Potential
Moderate
over 1 year ago

Spring Framework DoS via conditional HTTP request GSA_kwCzR0hTQS0ycm1qLW1xNjctaDk3Z84AA_vW

maven org.springframework:spring-web
Potential
High
over 1 year ago

Path traversal vulnerability in functional web frameworks GSA_kwCzR0hTQS1jeDdmLWc2bXAtN2hxbc4AA_gn

maven org.springframework:spring-webflux, org.springframework:spring-webmvc
Potential
Moderate
over 1 year ago

Spring Framework vulnerable to Denial of Service GSA_kwCzR0hTQS05Y21xLW05ajUtbXZ3d84AA-yn

maven org.springframework:spring-expression
Potential
Potential
High
about 2 years ago

Spring Framework server Web DoS Vulnerability GSA_kwCzR0hTQS1yNHEzLTdnNHEteDg5bc4AA4ms

maven org.springframework:spring-core
Potential
High
over 2 years ago

Spring Framework vulnerable to denial of service GSA_kwCzR0hTQS12OTRoLWh2aGctbWY5aM4AA3ZR

maven org.springframework:spring-webmvc
Potential
High
almost 3 years ago

Spring Framework vulnerable to denial of service GSA_kwCzR0hTQS13eHFjLXB4dzktZzJwOM4AAywq

maven org.springframework:spring-expression
Potential
Moderate
almost 4 years ago

Improper Output Neutralization for Logs in Spring Framework GSA_kwCzR0hTQS1yZm1wLTk3amotaDhtNs4AAqer

maven org.springframework:spring, org.springframework:spring-core
Potential
Potential
Moderate
almost 4 years ago

Spring Framework and Spring Security vulnerable to Deserialization of Untrusted Data GSA_kwCzR0hTQS1mODY2LW05bXYtMnhyM84AAWLy

maven org.springframework.security:spring-security-core, org.springframework:spring-core
Potential
Moderate
almost 4 years ago

Cross-Site Request Forgery in Spring Framework GSA_kwCzR0hTQS1nNmhmLWY5Y3EtcTd3N83o4w

maven org.springframework:spring-web
Potential
Moderate
almost 4 years ago

Cross-Site Request Forgery in Spring Framework GSA_kwCzR0hTQS04Y21tLXFqOGctZmNwNs3o_A

maven org.springframework:spring-webmvc
Potential
Moderate
almost 4 years ago

Missing XML Validation in Spring Framework GSA_kwCzR0hTQS12cDYzLXJyY20tOW1waM3o-Q

maven org.springframework:spring-oxm
Potential
Moderate
almost 4 years ago

Cross-Site Request Forgery in Spring Framework GSA_kwCzR0hTQS1ycDRwLWc2OXItNDM4eM3pDQ

maven org.springframework:spring-oxm
Potential
Potential
High
almost 4 years ago

Denial of service in Spring Framework GSA_kwCzR0hTQS1oaDI2LTZ4d3ItZ2d2N83mDQ

maven org.springframework:spring-beans
Moderate
almost 4 years ago

Spring Framework Inefficient Regular Expression Complexity GSA_kwCzR0hTQS13ampyLWg0d2gtdzZ2ds3Duw

maven org.springframework:spring-core
Potential
Potential
Potential
Critical
almost 4 years ago

Remote Code Execution in Spring Framework GSA_kwCzR0hTQS0zNnAzLXdqbWctaDk0eM03aQ

maven org.springframework.boot:spring-boot-starter-webflux, org.springframework:spring-webflux, org.springframework.boot:spring-boot-starter-web, org.springframework:spring-webmvc, org.springframework:spring-beans
Moderate
about 4 years ago

Log entry injection in Spring Framework GSA_kwCzR0hTQS02Z2YyLXB2cXctMzdwaM0h5Q

maven org.springframework:spring-core
Potential
Moderate
about 6 years ago

CSRF attack via CORS preflight requests with Spring MVC or Spring WebFlux MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTdwbTQtZzJxai1qODV4

maven org.springframework:spring-webflux, org.springframework:spring-webmvc
High
over 7 years ago

Spring Security and Spring Framework may not recognize certain paths that should be protected MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLThjcnYtNDlmci0yaDZq

maven org.springframework.security:spring-security-core, org.springframework:spring-core
Potential
Potential