Broadcom Spring Cloud Commons — known CVE vulnerabilities
Every CVE whose affected-product data names Broadcom Spring Cloud Commons, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (1)
CVE-2026-59284 — CVSS 7.6 (high): There is no allow list for property keys when Spring Cloud Commons writable /actuator/env is enabled. Spring Cloud Commons 5.0.0 - 5.0.2…