CVE-2026-59318
EUVD-2026-6393321.08.2026, 12:16
In Spring AI's tool calling support, the per-request tool list is advertised to the model as a boundary but is not fully enforced when a tool call is dispatched. Under certain conditions, a tool that was not made available to the current request could be invoked, potentially leading to privilege escalation. Affected versions: Spring AI: 2.0.0 Spring AI: 1.1.0 through 1.1.8 Spring AI: 1.0.0 through 1.0.9Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| vmware | spring_ai | 1.0.0 ≤ 𝑥 < 1.0.10 |
| vmware | spring_ai | 1.1.0 ≤ 𝑥 < 1.1.9 |
| vmware | spring_ai | 2.0.0 ≤ 𝑥 < 2.0.1 |
𝑥
= Vulnerable software versions