Vulnerabilities (CVE)

Filtered by vendor Broadcom Subscribe
Filtered by product Spring Cloud Commons
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-59284 1 Broadcom 1 Spring Cloud Commons 2026-09-01 N/A 7.6 HIGH
There is no allow list for property keys when Spring Cloud Commons writable /actuator/env is enabled. Spring Cloud Commons 5.0.0 - 5.0.2 Spring Cloud Commons 4.3.0 - 4.3.3 Spring Cloud Commons 4.0.0 - 4.2.6 Spring Cloud Commons 3.1.10 and earlier