
We found results for “”
CVE-2025-41249
Good to know:


Date: September 16, 2025
The Spring Framework annotation detection mechanism may not correctly resolve annotations on methods within type hierarchies with a parameterized super type with unbounded generics. This can be an issue if such annotations are used for authorization decisions.
Severity Score
Related Resources (7)
Severity Score
Top Fix

Upgrade Version
Upgrade to version org.springframework:spring-core:6.2.11;org.springframework:spring-core:null;org.springframework:spring-core:null;org.springframework:spring-core:null;https://github.com/spring-projects/spring-framework.git - v6.2.11;https://github.com/spring-projects/spring-framework.git - null;https://github.com/spring-projects/spring-framework.git - null
CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | NONE |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | HIGH |
Integrity (I): | NONE |
Availability (A): | NONE |