VendorsVMwarespring_integrationall versions
Vulnerabilities

VMware Spring Integration

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2020-5413
Kryo Configuration Allows Code Execution with Unknown "Serialization Gadgets"
Published 2020-07-31 · Modified
9.8EPSS 0.044
CVE-2026-47864
Unsafe Java deserialization in SerializingHttpMessageConverter — remote code execution
Published 2026-08-27 · Analyzed
9.8EPSS 0.041
CVE-2019-3772
Spring Integration XML External Entity Injection (XXE)
Published 2019-01-18 · Modified
9.8EPSS 0.030
CVE-2026-59324
fluxTransform shared RequestMessageHolder causes cross-message header leakage under async fluxFunction
Published 2026-08-27 · Analyzed
8.2EPSS 0.002
CVE-2026-59307
Deserialization allow-list silently bypassed: setBeanClassLoader replaces deserializer but mapper keeps stale reference
Published 2026-08-27 · Analyzed
8.0EPSS 0.003
CVE-2026-40987
Remote-file synchronizer in Spring Integration writes server-supplied filename under localDirectory without canonicalization
Published 2026-06-11 · Analyzed
7.1EPSS 0.002
CVE-2026-59311
Fixed predictable /tmp/ziptransformer work directory enables symlink pre-creation
Published 2026-08-27 · Analyzed
6.8EPSS 0.004
CVE-2026-59293
SMB minimum protocol dialect defaults to SMB1
Published 2026-08-27 · Analyzed
6.6EPSS 0.002
CVE-2026-59274
Unbounded decompression in UnZipTransformer enables zip-bomb DoS
Published 2026-08-27 · Analyzed
6.5EPSS 0.002
CVE-2026-47859
Unbounded memory allocation in RFC6587SyslogDeserializer (octet-counted framing) — remote DoS
Published 2026-08-26 · Analyzed
6.5EPSS 0.002
CVE-2026-47861
UDP adapter sends ack to attacker-supplied host:port parsed from packet body, even when acknowledge=false
Published 2026-08-26 · Analyzed
6.3EPSS 0.003
CVE-2026-47856
JsonToObjectTransformer resolves the json__TypeId__ message header to an arbitrary class without an allow-list
Published 2026-08-26 · Analyzed
6.3EPSS 0.002
CVE-2026-59322
EmbeddedHeadersJsonMessageMapper default gives wire peer full control of MessageHeaders
Published 2026-08-27 · Analyzed
6.3EPSS 0.002
CVE-2026-47862
ZipTransformer uses file_name header to build workDirectory path without sanitization
Published 2026-08-26 · Analyzed
5.4EPSS 0.003
CVE-2026-47880
DefaultJmsHeaderMapper copies all JMS user properties into MessageHeaders without excluding framework-significant names
Published 2026-08-27 · Analyzed
5.4EPSS 0.002
CVE-2026-59321
Shared JSR-223 ScriptEngine evaluated concurrently without THREADING check
Published 2026-08-27 · Analyzed
5.4EPSS 0.001
CVE-2026-59292
World-readable metadata file in PropertiesPersistingMetadataStore (insecure temp-file permissions)
Published 2026-08-27 · Analyzed
3.2EPSS 0.001