Known vulnerabilities in Spring Cloud Gateway 3.1.10

Vendor: Broadcom
Version: 3.1.10
Software CPE: cpe:2.3:a:broadcom:spring_cloud_gateway:*:*:*:*:*:*:*:*
Total vulnerabilities: 2
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Spring Cloud Gateway version 3.1.10 Spring Cloud Gateway 3.1.10 is affected by 2 vulnerabilities: 1 high, 1 medium Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU117304 - Exposure of sensitive information to an unauthorized actor
CVE-2025-41253
CWE-200 Medium
No
No
3.1.12, 4.1.12, 4.2.6, 4.3.2 16.10.2025 SB2025101623
SB2025121921
SB2026042275
and 2 more
#VU114995 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-41243
CWE-94 High
No
No
3.1.11, 4.1.11, 4.2.5, 4.3.1 09.09.2025 SB2025090910