All 8 CVE vulnerabilities found in Spring Boot, with AI-generated Chinese analysis, references, and POCs.
Vendor: Dell EMC
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-22731 | Authentication Bypass under Actuator Health groups paths CWE-288 | 8.2 | High | 2026-03-19 |
| CVE-2025-22235 | Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed CWE-20 | 7.3 | High | 2025-04-28 |
| CVE-2024-38807 | CVE-2024-38807: Signature Forgery Vulnerability in Spring Boot's Loader | 6.3 | Medium | 2024-08-23 |
| CVE-2023-34055 | Spring Boot server Web Observations DoS Vulnerability | 5.3 | Medium | 2023-11-28 |
| CVE-2023-20883 | Spring Framework 资源管理错误漏洞 CWE-400 | 7.5 | - | 2023-05-26 |
| CVE-2023-20873 | Spring Framework 安全漏洞 | 9.8 | - | 2023-04-20 |
| CVE-2019-3797 | Additional information exposure with Spring Data JPA derived queries CWE-89 | 5.3 | - | 2019-05-06 |
| CVE-2018-1196 | Pivotal Spring Boot 安全漏洞 | 6.5 | - | 2018-03-19 |
All 8 known CVE vulnerabilities affecting Spring Boot with full Chinese analysis, references, and POCs where available.