CVE Tools

Spring Framework

102 CVEs tracked. 2 of them are in CISA KEV.

This hub aggregates every CVE we track for Spring Framework, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.

Spring Framework CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Spring Framework CVEs per month
MonthCVEs
2024-102
2024-110
2024-121
2025-010
2025-021
2025-030
2025-040
2025-051
2025-061
2025-070
2025-081
2025-091
2025-101
2025-110
2025-120
2026-010
2026-020
2026-032
2026-043
2026-050
2026-0618
2026-070
2026-0817
2026-090

Severity

How the 102 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical1313%
  • High3231%
  • Medium5049%
  • Low77%

Latest CVEs

The 15 most recently published vulnerabilities affecting Spring Framework.

  1. CVE-2026-59314Spring Framework response splitting in ContentDisposition3.7
  2. CVE-2026-59313Server Sent Event stream corruption in Spring MVC functional web framework9.8
  3. CVE-2026-59283Spring Framework Safety Guard Bypass via SpEL Expression Compilation9.1
  4. CVE-2026-59282Spring Framework Denial of Service via Unbounded List Growth in Data Binding7.5
  5. CVE-2026-59281Spring Framework Cross-site Scripting via EscapedErrors6.1
  6. CVE-2026-59280Spring Framework Path Traversal via Backslash in SpringTemplateLoader4.3
  7. CVE-2026-47893Spring Framework Request Headers Included in Exception Reasons in HandshakeWebsocketService7.5
  8. CVE-2026-47892Spring Framework Header Predicate Bypass in WebFlux Functional Endpoints9.8
  9. CVE-2026-47891Spring Framework maxInMemorySize Bypassed in Jaxb2Decoder9.8
  10. CVE-2026-47890Spring Framework Server Sent Event stream corruption while rendering fragments9.8
  11. CVE-2026-47889Spring Framework sameSite Attribute Dropped in JettyCoreServerHttpResponse7.5
  12. CVE-2026-47888Spring Framework Memory Leak via SETUP Frame in RSocketMessageHandler7.5
  13. CVE-2026-47887Spring Framework Open Redirect in UrlFileNameViewController6.1
  14. CVE-2026-47886Spring Framework Denial of Service via Unbounded Exponentiation in SpEL Expressions7.5
  15. CVE-2026-47885Spring Framework maxPartSize Ignored in PartEventHttpMessageReader7.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store