SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-59299

LOW · CVSS 3.1 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

The vulnerability affects multiple versions of Spring Cloud Function, where improper composition lookup can lead to potential base function poisoning. Although classified as low severity, this issue could allow attackers to manipulate function behavior, potentially impacting application integrity. Organizations using the affected versions should prioritize remediation to mitigate any risks associated with this vulnerability.

CVE
CVE-2026-59299
Severity
LOW
CVSS
3.1
EPSS
0.15%

Original NVD Description

Composition lookup can potentially poison base function in Spring Cloud Function. Spring Cloud Function 5.0.0 - 5.0.3 Spring Cloud Function 4.3.0 - 4.3.4 Spring Cloud Function 4.2.0 - 4.2.7 Spring Cloud Function 3.2.16 and earlier

Related CVEs

Other vulnerabilities affecting the same vendor(s)