springaicommunity CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

springaicommunity vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to springaicommunity, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-45609 mcp-security provides Security and Authorization support for Model Context Protocol in Spring AI. Prior to 0.1.9, the mcp-security framework fails to implement the mandatory SSRF mitigations outlined in the Model Context Protocol (MCP) security specifications. Specifically, it processes untrusted URLs for OAuth-related discovery and metadata without verifying if the targets are malicious or internal to the network. This only affects installations with Dynamic Client Registration (DCR) enabled Th [email protected] 7.2 0.03% 2026-05-29 2026-06-03
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence