Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • C
Remote Code Execution
org.springframework:spring-beans[ ,5.2.20)[5.3.0, 5.3.18)Maven30 Mar 2022
  • M
Arbitrary Code Execution
org.springframework:spring-beans[2.5,2.5.6.SEC02)[3.0.0.RELEASE,3.0.3.RELEASE)Maven18 Jun 2010
  • L
Improper Handling of Case Sensitivity
org.springframework:spring-context[6.1.0,6.1.20)[6.2.0,6.2.7)Maven16 May 2025
  • L
Improper Handling of Case Sensitivity
org.springframework:spring-context[,6.1.14)Maven18 Oct 2024
  • L
Improper Handling of Case Sensitivity
org.springframework:spring-context[,5.2.21)[5.3.0, 5.3.19)Maven14 Apr 2022
  • L
Denial of Service (DoS)
org.springframework:spring-context[3.2.13.RELEASE,3.2.14.RELEASE)[4.1.6.RELEASE,4.1.7.RELEASE)Maven6 Nov 2015
  • L
Improper Handling of Case Sensitivity
org.springframework:spring-core[,6.1.14)Maven18 Oct 2024
  • H
Uncontrolled Resource Consumption ('Resource Exhaustion')
org.springframework:spring-core[6.0.15,6.0.16)[6.1.2,6.1.3)Maven22 Jan 2024
  • M
Improper Input Validation
org.springframework:spring-core[,5.2.19.RELEASE)[5.3.0,5.3.14)Maven6 Jan 2022
  • M
Improper Output Neutralization for Logs
org.springframework:spring-core[5.3.0,5.3.12)[,5.2.18)Maven27 Oct 2021
  • H
Access Restriction Bypass
org.springframework:spring-core[5.0.5.RELEASE, 5.0.6.RELEASE)Maven10 May 2018
  • M
Multipart Content Pollution
org.springframework:spring-core[4.3.0.RELEASE, 4.3.14.RELEASE)[5.0.0.RELEASE, 5.0.5.RELEASE)Maven9 Apr 2018
  • L
Denial of Service (DoS)
org.springframework:spring-core[3.2.8.RELEASE,3.2.14.RELEASE)[4.1.0.RELEASE,4.1.7.RELEASE)Maven6 Nov 2015
  • M
Access Restriction Bypass
org.springframework:spring-core[3.0.0.RELEASE,3.0.6.RELEASE)Maven8 Sept 2014
  • M
Directory Traversal
org.springframework:spring-core[3.0.0.RELEASE, 3.2.9.RELEASE)[4.0.0.RELEASE, 4.0.5.RELEASE)Maven5 Sept 2014
  • H
Expression Language Injection
org.springframework:spring-core[2.0.0, 2.5.6.SEC03)[3.0.0, 3.0.6)Maven9 Sept 2011
  • M
Arbitrary Code Execution
org.springframework:spring-core[2.5.0,2.5.6.SEC01)[3.0.0,3.0.2.RELEASE)Maven18 Jun 2010
  • M
Regular Expression Denial of Service (ReDoS)
org.springframework:spring-core[,2.5.6.SEC01)Maven22 Apr 2009
  • M
Allocation of Resources Without Limits or Throttling
org.springframework:spring-expression[5.3.0,5.3.39)Maven15 Aug 2024
  • M
Allocation of Resources Without Limits or Throttling
org.springframework:spring-expression[,5.2.24.RELEASE)[5.3.0,5.3.27)[6.0.0,6.0.8)Maven14 Apr 2023
  • M
Allocation of Resources Without Limits or Throttling
org.springframework:spring-expression[,5.2.23.RELEASE)[5.3.0,5.3.26)[6.0.0,6.0.7)Maven23 Mar 2023
  • M
Denial of Service (DoS)
org.springframework:spring-expression[,5.2.20.RELEASE)[5.3.0,5.3.17)Maven29 Mar 2022
  • L
Denial of Service (DoS)
org.springframework:spring-jms[3.2.11.RELEASE,3.2.14.RELEASE)[4.0.7.RELEASE,4.1.7.RELEASE)Maven6 Nov 2015
  • M
Denial of Service (DoS)
org.springframework:spring-messaging[,5.2.22.RELEASE)[5.3.0,5.3.20)Maven12 May 2022
  • M
Regular Expression Denial of Service (ReDoS)
org.springframework:spring-messaging[4.3.0.RELEASE,4.3.17.RELEASE)[5.0.0.RELEASE,5.0.6.RELEASE)Maven10 May 2018
  • C
Arbitrary Code Execution
org.springframework:spring-messaging[,4.3.16.RELEASE)[5.0.0.RELEASE, 5.0.5.RELEASE)Maven16 Apr 2018
  • C
Arbitrary Code Execution
org.springframework:spring-messaging[,4.3.16.RELEASE)[5.0.0.RELEASE,5.0.5.RELEASE)Maven9 Apr 2018
  • M
Denial of Service (DoS)
org.springframework:spring-oxm[3.2.0.RELEASE, 3.2.14.RELEASE)[4.0.0.RELEASE, 4.1.7.RELEASE)Maven25 Dec 2016
  • H
XML External Entity (XXE) Injection
org.springframework:spring-oxm[3.0.0.RELEASE,3.2.9.RELEASE)[4.0.0.RELEASE,4.0.5.RELEASE)Maven25 Dec 2016
  • M
XML External Entity (XXE) Injection
org.springframework:spring-oxm[3.0.0.RELEASE,3.2.3.RELEASE)[4.0.0.RELEASE,4.0.1.RELEASE)Maven25 Dec 2016