Vmware Spring Cloud Stream — known CVE vulnerabilities
Every CVE whose affected-product data names Vmware Spring Cloud Stream, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (4)
CVE-2026-59303 — CVSS 3.1 (low): Dynamic destination cache size is not properly bound in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 -…
CVE-2026-59304 — CVSS 3.1 (low): Improper caching of the original content type in Spring Cloud Stream Avro. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 -…
CVE-2026-59305 — CVSS 3.1 (low): Partition interceptor may be improperly added while sending message. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3…
CVE-2026-59306 — CVSS 3.1 (low): Potential for deserialization of untrusted types in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 -…