Логотип exploitDog
bind:CVE-2026-22733
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-22733

Количество 3

Количество 3

nvd логотип

CVE-2026-22733

16 дней назад

Spring Boot applications with Actuator can be vulnerable to an "Authentication Bypass" vulnerability when an application endpoint that requires authentication is declared under the path used by the CloudFoundry Actuator endpoints. This issue affects Spring Security: from 4.0.0 through 4.0.3, from 3.5.0 through 3.5.11, from 3.4.0 through 3.4.14, from 3.3.0 through 3.3.17, from 2.7.0 through 2.7.31.

CVSS3: 8.2
EPSS: Низкий
debian логотип

CVE-2026-22733

16 дней назад

Spring Boot applications with Actuator can be vulnerable to an "Authen ...

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-mgvc-8q2h-5pgc

16 дней назад

Spring Boot has an Authentication Bypass under Actuator CloudFoundry endpoints

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-22733

Spring Boot applications with Actuator can be vulnerable to an "Authentication Bypass" vulnerability when an application endpoint that requires authentication is declared under the path used by the CloudFoundry Actuator endpoints. This issue affects Spring Security: from 4.0.0 through 4.0.3, from 3.5.0 through 3.5.11, from 3.4.0 through 3.4.14, from 3.3.0 through 3.3.17, from 2.7.0 through 2.7.31.

CVSS3: 8.2
0%
Низкий
16 дней назад
debian логотип
CVE-2026-22733

Spring Boot applications with Actuator can be vulnerable to an "Authen ...

CVSS3: 8.2
0%
Низкий
16 дней назад
github логотип
GHSA-mgvc-8q2h-5pgc

Spring Boot has an Authentication Bypass under Actuator CloudFoundry endpoints

CVSS3: 8.2
0%
Низкий
16 дней назад

Уязвимостей на страницу