« Back to list

Vmware

Vmware Spring MVC: vulnerabilities and CVEs

Vmware Spring MVC has 2 published vulnerabilities, 1 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs2
Last 12 months1
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2026-80515High (8.9)0.47%—Sep 3, 2026
In Eclipse Arrowhead versions from 5.0.0 to 5.2.1 the management-authorization gate that protects every /…/mgmt/… REST endpoint decides whether to apply its check by calling…
CVE-2024-38828Medium (5.3)0.72%—Nov 18, 2024
Spring MVC controller methods with an @RequestBody byte[] method parameter are vulnerable to a DoS attack.

🎯 How it gets exploited (ATT&CK techniques)

  1. T1078.002 Domain Accounts1
  2. T1210 Exploitation of Remote Services1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Vmware