org.springframework.boot:spring-boot-actuator-autoconfigure

Licenses: Apache-2.0

Direct Vulnerabilities

Known vulnerabilities in the org.springframework.boot:spring-boot-actuator-autoconfigure package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Authentication Bypass Using an Alternate Path or Channel

[3.4.0,3.5.12)[4.0.0-M1,4.0.4)
  • C
Authentication Bypass Using an Alternate Path or Channel

[,3.5.12)[4.0.0-M1,4.0.4)
  • M
Improper Input Validation

[2.7.0,3.3.11)[3.4.0,3.4.5)
  • H
Access Restriction Bypass

[,2.5.15)[2.6.0,2.6.15)[2.7.0,2.7.11)[3.0.0,3.0.6)

Package versions

221 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
4.1.0-RC123 Apr, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.0-M426 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.0-M320 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.0-M219 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.0-M122 Jan, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.623 Apr, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.526 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.419 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.319 Feb, 2026
  • 2
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.222 Jan, 2026
  • 2
    C
  • 0
    H
  • 0
    M
  • 0
    L