ZeroHour

CVE-2026-59306

CVSS 3.1
3.8 low
EPSS
<1%p14
Published
()
Modified
Description

Potential for deserialization of untrusted types in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3 Spring Cloud Stream 4.2.0 - 4.2.6

Vendors
vmware
Products
spring cloud stream
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.