Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-59284

Опубликовано: 27 авг. 2026
Источник: nvd
CVSS3: 7.6
EPSS Низкий

Описание

There is no allow list for property keys when Spring Cloud Commons writable /actuator/env is enabled. Spring Cloud Commons 5.0.0 - 5.0.2 Spring Cloud Commons 4.3.0 - 4.3.3 Spring Cloud Commons 4.0.0 - 4.2.6 Spring Cloud Commons 3.1.10 and earlier

EPSS

Процентиль: 26%
0.00332
Низкий

7.6 High

CVSS3

Дефекты

CWE-915

Связанные уязвимости

CVSS3: 7.6
debian
5 дней назад

There is no allow list for property keys when Spring Cloud Commons wri ...

CVSS3: 7.6
github
4 дня назад

There is no allow list for property keys when Spring Cloud Commons writable /actuator/env is enabled. Spring Cloud Commons 5.0.0 - 5.0.2 Spring Cloud Commons 4.3.0 - 4.3.3 Spring Cloud Commons 4.0.0 - 4.2.6 Spring Cloud Commons 3.1.10 and earlier

EPSS

Процентиль: 26%
0.00332
Низкий

7.6 High

CVSS3

Дефекты

CWE-915