SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-59291

LOW · CVSS 2 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

Spring Cloud Function versions 4.2.0 to 5.0.3 are susceptible to an arbitrary file read and Server-Side Request Forgery (SSRF) vulnerability, which could allow attackers to access sensitive files or make unauthorized requests from the server. Although classified as low severity, organizations using these specific versions should prioritize remediation to mitigate potential exposure to sensitive data and unauthorized network interactions. Users of affected Spring Cloud Function releases should assess their environments for this vulnerability and apply necessary updates.

CVE
CVE-2026-59291
Severity
LOW
CVSS
2
EPSS
0.18%

Original NVD Description

Potential arbitrary file read and SSRF vulnerability in Spring Cloud Function. Spring Cloud Function 5.0.0 - 5.0.3 Spring Cloud Function 4.3.0 - 4.3.4 Spring Cloud Function 4.2.0 - 4.2.7

Related CVEs

Other vulnerabilities affecting the same vendor(s)