Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Maven/org.springframework.security:spring-security-web — 5 CVEs · VulnScope
pkg:Maven/
org.springframework.security:spring-security-web
5 total CVEs
CRITICAL
3
HIGH
1
MEDIUM
1
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.8
CVE-2022-22978
Authorization bypass in Spring Security
>= 5.5.0, < 5.5.7
CRITICAL
9.1
CVE-2026-22732
Spring Security HTTP Headers Are not Written Under Some Conditions
from 0, <= 5.7.14
CRITICAL
9.1
CVE-2024-38821
Spring Security vulnerable to Authorization Bypass of Static Resources in WebFlux Applications
from 0, < 5.7.13
HIGH
8.8
Privilege escalation in spring security
>= 5.4.0, < 5.4.4
MEDIUM
6.8
Spring Security Vulnerable to Unauthorized User Impersonation when Using X.509 Client Certificates
>= 7.0.0, < 7.0.5
CVE-2021-22112
CVE-2026-22747