CyberRota Analysis
AI-GeneratedWebFlux applications utilizing functional endpoints and deployed with DispatcherServlet may be susceptible to a header predicate bypass during pre-flight requests, potentially allowing unauthorized access to resources. Organizations using affected versions of the Spring Framework (5.2.x to 7.0.x) should prioritize this vulnerability to mitigate risks associated with improper request handling and ensure the security of their applications.
Original NVD Description
A WebFlux application using functional endpoints and deployed with DispatcherServlet may be vulnerable to a header predicate bypass in a pre-flight request. Spring Framework 7.0.0 - 7.0.8 Spring Framework 6.2.0 - 6.2.19 Spring Framework 6.1.0 - 6.1.28 Spring Framework 6.0.0 - 6.0.30 Spring Framework 5.3.0 - 5.3.49 Spring Framework 5.2.5.RELEASE - 5.2.25.RELEASE
Related CVEs
Other vulnerabilities affecting the same vendor(s)