SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-59298

LOW · CVSS 3.1 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

Improper filtering of HTTP headers in specific versions of Spring Cloud Function could allow an attacker to manipulate HTTP requests, potentially leading to security issues such as header injection. While the severity is rated low, organizations using affected versions (3.2.16 and earlier, and 4.2.0 to 5.0.3) should prioritize updating their software to mitigate any potential risks associated with this vulnerability. Developers and system administrators utilizing these Spring Cloud Function versions should assess their exposure and apply necessary patches.

CVE
CVE-2026-59298
Severity
LOW
CVSS
3.1
EPSS
0.16%

Original NVD Description

Potential for improper filtering of HTTP headers in Spring Cloud Function. Spring Cloud Function 5.0.0 - 5.0.3 Spring Cloud Function 4.3.0 - 4.3.4 Spring Cloud Function 4.2.0 - 4.2.7 Spring Cloud Function 3.2.16 and earlier

Related CVEs

Other vulnerabilities affecting the same vendor(s)