Spring tools
This hub aggregates every CVE we track for Spring tools, a product in the devtools ci space. Use it to gauge the current risk picture and drill into individual advisories.
3
CVEs tracked
1
Critical
1
High
0
In CISA KEV
Severity distribution
LOW1HIGH1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2
0
0
2024-102026-09
Latest CVEs
The 3 most recently published vulnerabilities affecting Spring tools.
- CVE-2026-59326HTTP Proxy Credentials Logged in Plaintext by the Spring Boot Language Server3.3
- CVE-2026-47858live information startup mode is vulnerable for remote code execution8.0
- CVE-2022-31691Spring Tools 4 for Eclipse version 4.16.0 and below as well as VSCode extensions such as Spring Boot Tools, Concourse CI Pipeline Editor, Bosh Editor and Cloudfoundry Manifest YML Support version 1...9.8
Product normalization is registry-driven with AI assist and human review. How it works