cbcvebase.

Vmware Spring Cloud Stream vulnerabilities

4 known vulnerabilities affecting vmware/spring_cloud_stream.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
LOW4

Vulnerabilities

Page 1 of 1
CVE-2026-59306P4LOWCVSS 3.8≥ 4.2.0, < 4.2.7≥ 4.3.0, < 4.3.4+1 more2026-08-27
CVE-2026-59306 [LOW] CWE-502 CVE-2026-59306: Potential for deserialization of untrusted types in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - Potential for deserialization of untrusted types in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3 Spring Cloud Stream 4.2.0 - 4.2.6
nvd
CVE-2026-59305P4LOWCVSS 3.8≥ 4.2.0, < 4.2.7≥ 4.3.0, < 4.3.4+1 more2026-08-27
CVE-2026-59305 [LOW] CWE-696 CVE-2026-59305: Partition interceptor may be improperly added while sending message. Spring Cloud Stream 5.0.0 - 5.0 Partition interceptor may be improperly added while sending message. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3 Spring Cloud Stream 4.2.0 - 4.2.6
nvd
CVE-2026-59304P4LOWCVSS 3.8≥ 4.2.0, < 4.2.7≥ 4.3.0, < 4.3.4+1 more2026-08-27
CVE-2026-59304 [LOW] CWE-843 CVE-2026-59304: Improper caching of the original content type in Spring Cloud Stream Avro. Spring Cloud Stream 5.0.0 Improper caching of the original content type in Spring Cloud Stream Avro. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3 Spring Cloud Stream 4.2.0 - 4.2.6
nvd
CVE-2026-59303P4LOWCVSS 3.8≥ 4.2.0, < 4.2.7≥ 4.3.0, < 4.3.4+1 more2026-08-27
CVE-2026-59303 [LOW] CWE-770 CVE-2026-59303: Dynamic destination cache size is not properly bound in Spring Cloud Stream. Spring Cloud Stream 5.0 Dynamic destination cache size is not properly bound in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3 Spring Cloud Stream 4.2.0 - 4.2.6
nvd
Vmware Spring Cloud Stream vulnerabilities | cvebase