Org.springframework.cloud:spring-cloud-gateway
2 CVEs tracked. 1 of them are in CISA KEV.
This hub aggregates every CVE we track for Org.springframework.cloud:spring-cloud-gateway, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
Org.springframework.cloud:spring-cloud-gateway CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 2 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- Medium1
Latest CVEs
The 2 most recently published vulnerabilities affecting Org.springframework.cloud:spring-cloud-gateway.
- CVE-2022-22947In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack when the Gateway Actuator endpoint is enabled, exposed and unsecured. A remote a...10.0
- CVE-2021-22051Applications using Spring Cloud Gateway are vulnerable to specifically crafted requests that could make an extra request on downstream services. Users of affected versions should apply the followin...6.5
Product grouping is registry-driven, with AI assist and human review. How it works