Spring cloud function
This hub aggregates every CVE we track for Spring cloud function, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
12
CVEs tracked
1
Critical
2
High
1
In CISA KEV
Severity distribution
LOW7HIGH2MEDIUM2CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2
0
7
0
2024-102026-09
Latest CVEs
The 12 most recently published vulnerabilities affecting Spring cloud function.
- CVE-2026-59302Potential for logging sensitive data in Spring Cloud Stream3.1
- CVE-2026-59301Potential for logging sensitive data in Spring Cloud Function Azure3.1
- CVE-2026-59300Potential for logging sensitive data in Spring Cloud Function AWS3.1
- CVE-2026-59299Composition lookup can potentially poison base function in Spring Cloud Function3.1
- CVE-2026-59298Potential for improper filtering of HTTP headers in Spring Cloud Function3.1
- CVE-2026-59297Spring Cloud Function can incorrectly determine if URI is secure3.1
- CVE-2026-59291Potential arbitrary file read and SSRF vulnerability in Spring Cloud Function2.0
- CVE-2026-40990Unbounded cache for function definitions5.7
- CVE-2026-40989Self Routing guard bypassed via function composition5.7
- CVE-2024-22271Spring Cloud Function Web DOS Vulnerability8.2
- CVE-2022-22979In Spring Cloud Function versions prior to 3.2.6, it is possible for a user who directly interacts with framework provided lookup functionality to cause a denial-of-service condition due to the cac...7.5
- CVE-2022-22963In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a routing-expression...KEV9.8
Product normalization is registry-driven with AI assist and human review. How it works