VMware Spring Boot是美国威睿(VMware)公司的一套开源框架。 VMware Spring Boot 4.0.3之前版本、3.5.11之前版本和3.4.15之前版本存在安全漏洞,该漏洞源于当已为Health Group附加路径配置的特定路径下声明需要身份验证的应用程序端点时,可能导致身份验证绕过。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Spring | Spring Boot | 4.0 ~ 4.0.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-22733 | 8.2 HIGH | Authentication Bypass under Actuator CloudFoundry endpoints |
| CVE-2026-22737 | 5.9 MEDIUM | Spring Framework Improper Path Limitation with Script View Templates |
| CVE-2026-22735 | 2.6 LOW | Server Sent Event stream corruption |
No comments yet