CVE security advisories and vulnerability history for spring-security by spring-projects.
17
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
0
Public exploits
With known exploit
6.9
Avg CVSS
2017–2024
Last updated
Overview
spring-projects spring-security has 17 published CVE records since 2017, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 0 have a known public exploit. The average CVSS base score across scored CVEs is 6.9.
This page aggregates every publicly disclosed vulnerability (CVE) affecting spring-projects spring-security, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of spring-projects spring-security's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical2
High3
Medium3
Low1
8 additional CVEs have no CVSS severity score.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of spring-projects spring-security's CVEs are currently listed in CISA's KEV catalog.
Public exploits
0
No spring-projects spring-security CVEs currently have a tracked public exploit.
Affected versions and CVEs
Browse every spring-projects spring-security version named in a CVE, then pick one to see only the CVEs that affect it.
Common questions about spring-projects spring-security vulnerabilities.
How many CVEs does spring-projects spring-security have?
spring-projects spring-security has 17 published CVE records since 2017.
How many spring-projects spring-security CVEs are in CISA KEV?
None of spring-projects spring-security's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Are there public exploits for spring-projects spring-security vulnerabilities?
No spring-projects spring-security CVEs currently have a tracked public exploit in this dataset.
Which versions of spring-projects spring-security are affected?
217 distinct spring-projects spring-security versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in spring-projects spring-security CVEs?
spring-projects spring-security's CVEs most often map to these CWE weakness types: CWE-287 (Improper Authentication), CWE-281 (Improper Preservation of Permissions), CWE-284 (Improper Access Control), CWE-329 (Generation of Predictable IV with CBC Mode).
How many critical spring-projects spring-security vulnerabilities are there?
spring-projects spring-security has 2 critical and 3 high-severity CVEs.
What is the average severity of spring-projects spring-security CVEs?
The average CVSS base score across spring-projects spring-security's scored CVEs is 6.9.