CVE-2026-47873

Summary

The Boot Dashboard Docker integration in Spring Tools publishes container control ports on all of the host's network interfaces (0.0.0.0) rather than restricting them to loopback. Affected Spring Products and Versions: Spring Tools for Eclipse: 5.2.0 and earlier

Affected Software

VendorProductVersion RangeStatus
SpringSpring Tools for Eclipse0 <= 5.2.0affected

Weaknesses

  • CWE-1327 Binding to an Unrestricted IP Address

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References