org.springframework.kafka:spring-kafka

Licenses: Apache-2.0

Direct Vulnerabilities

Known vulnerabilities in the org.springframework.kafka:spring-kafka package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Deserialization of Untrusted Data

[,3.3.16)[4.0.0-M1,4.0.6)
  • H
Improper Validation of Specified Quantity in Input

[,3.3.16)[4.0.0-M1,4.0.6)
  • H
Allocation of Resources Without Limits or Throttling

[,3.3.16)[4.0.0-M1,4.0.6)
  • M
Deserialization of Untrusted Data

[2.8.1,2.9.11)[3.0.0,3.0.10)

Package versions

251 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
4.2.0-M120 Aug, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.120 Aug, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.09 Jun, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.0-RC120 Apr, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.0-M216 Mar, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.1.0-M116 Feb, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.720 Aug, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.69 Jun, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
4.0.520 Apr, 2026
  • 1
    C
  • 2
    H
  • 0
    M
  • 0
    L
4.0.416 Mar, 2026
  • 1
    C
  • 2
    H
  • 0
    M
  • 0
    L