SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-22752

CRITICAL · CVSS 9.6 EPSS 0.45%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The vulnerability in Spring Authorization Server allows for authentication bypass, potentially enabling unauthorized access to sensitive resources. This critical issue affects multiple versions of the server, specifically from 7.0.0 to 7.0.4, and from 1.3.0 to 1.5.6. Organizations using these versions should prioritize immediate updates to mitigate the risk of exploitation.

CVE
CVE-2026-22752
Severity
CRITICAL
CVSS
9.6
EPSS
0.45%

Original NVD Description

Authentication bypass by primary weakness vulnerability in Spring Security Spring Authorization Server. This issue affects Spring Authorization Server: from 7.0.0 through 7.0.4, from 1.5.0 through 1.5.6, from 1.4.0 through 1.4.9, from 1.3.0 through 1.3.10.