CVE-2026-41712
EUVD-2026-2944812.05.2026, 11:16
Spring AI's chat memory component contained a problematic default that, when not explicitly overridden, could result in unintended data exposure between users.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| vmware | spring_ai | 1.0.0 ≤ 𝑥 < 1.0.7 |
| vmware | spring_ai | 1.1.0 ≤ 𝑥 < 1.1.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration