-
-
Notifications
You must be signed in to change notification settings - Fork 355
Open
Description
Type: Bug
Component:
spring-cloud-aws-core
Describe the bug
Our vulnerability scanner raised concerns regarding io.awspring.cloud:[email protected]. It seems this version of the lib depends on org.springframework:[email protected] which has a known vulnerability https://www.cve.org/CVERecord?id=CVE-2025-41249
Note: Upgrading the core would also probably fix https://www.cve.org/CVERecord?id=CVE-2025-41242 introduced through io.awspring.cloud:[email protected] › io.awspring.cloud:[email protected] › org.springframework:[email protected] › org.springframework:[email protected] › org.springframework:[email protected]
Sample
N/A
Metadata
Metadata
Assignees
Labels
No labels