CVE-2026-59303
3.1
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:N
Summary
Dynamic destination cache size is not properly bound in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3 Spring Cloud Stream 4.2.0 - 4.2.6
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Spring | Spring Cloud Stream | 5.0.0 <= 5.0.2 | affected |
| Spring | Spring Cloud Stream | 4.3.0 <= 4.3.3 | affected |
| Spring | Spring Cloud Stream | 4.2.0 <= 4.2.6 | affected |
Weaknesses
- CWE-770 Allocation of Resources Without Limits or Throttling
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.