CVE-2026-59291

Summary

Potential arbitrary file read and SSRF vulnerability in Spring Cloud Function. Spring Cloud Function 5.0.0 - 5.0.3 Spring Cloud Function 4.3.0 - 4.3.4 Spring Cloud Function 4.2.0 - 4.2.7

Affected Software

VendorProductVersion RangeStatus
SpringSpring Cloud Function5.0.0 <= 5.0.3affected
SpringSpring Cloud Function4.3.0 <= 4.3.4affected
SpringSpring Cloud Function4.2.0 <= 4.2.7affected

Weaknesses

  • CWE-918 Server-Side Request Forgery (SSRF)

References