CVE-2026-40966
בינונית 5.9
תיאור (מקור, אנגלית)
In Spring AI, an attacker can bypass conversation isolation and exfiltrate sensitive memory from other users’ chat histories, including secrets and credentials, by injecting filter logic through conversationId. Only applications that use VectorStoreChatMemoryAdvisor and pass user-supplied input as a conversationId are affected.
מדדים
- CVSS 3.1
-
5.9 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-27/9/2026
- CWE
- CWE-284
מוצרים מושפעים
vmware: spring ai
קישורים
- https://spring.io/security/cve-2026-40966 Vendor Advisory
- https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator?version=3.1&vector=AV:N/A… US Government Resource