We found results for “”
CVE-2025-41249
Good to know:
Date: September 16, 2025
The Spring Framework annotation detection mechanism may not correctly resolve annotations on methods within type hierarchies with a parameterized super type with unbounded generics. This can be an issue if such annotations are used for authorization decisions.
Severity Score
Related Resources (7)
Severity Score
Top Fix
Upgrade Version
Upgrade to version org.springframework:spring-core:6.2.11;org.springframework:spring-core:no_fix;org.springframework:spring-core:no_fix;org.springframework:spring-core:no_fix;https://github.com/spring-projects/spring-framework.git - v6.2.11;https://github.com/spring-projects/spring-framework.git - no_fix;https://github.com/spring-projects/spring-framework.git - no_fix
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | HIGH |
| Integrity (I): | NONE |
| Availability (A): | NONE |
Vulnerabilities
Projects
Contact Us


