Known vulnerabilities in Spring Cloud Contract
Vendor:
Spring
Software:
Spring Cloud Contract
Software CPE:
cpe:2.3:a:spring:spring_cloud_contract:*:*:*:*:*:*:*:*
Website:
https://spring.io/
Total vulnerabilities:
1
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
5.3
Breakdown by Severity Chart
5.0.3
4.3.4
4.3.3
5.0.2
4.3.1
4.2.3
5.0.1
5.0.0
5.0.0-RC1
5.0.0-M4
5.0.0-M3
5.0.0-M2
4.1.7
5.0.0-M1
4.0.11
4.0.10
4.2.2
4.1.6
4.3.0
4.3.0-RC1
4.3.0-M3
4.2.1
4.3.0-M2
4.3.0-M1
4.2.0
4.1.5
4.2.0-RC1
4.2.0-M2
4.2.0-M1
4.1.4
4.1.3
4.1.2
4.1.1
4.1.0-RC1
4.1.0-M2
4.1.0-M1
4.1.0
4.0.5
4.0.4
4.0.3
4.0.2
4.0.1
4.0.0-RC3
4.0.0-RC2
4.0.0-RC1
4.0.0-M5
4.0.0-M4
4.0.0-M3
4.0.0-M2
4.0.0
3.1.10
3.1.9
3.1.8
3.1.7
3.1.6
3.1.5
3.1.4
3.1.3
3.1.2
3.1.1
3.1.0-RC1
3.1.0-M3
3.1.0-M2
3.1.0-M1
3.1.0
3.0.6
3.0.5
3.0.4
3.0.3
3.0.2
3.0.1
3.0.0.M1
3.0.0-RC1
3.0.0-M6
3.0.0-M5
3.0.0-M4
3.0.0-M3
3.0.0-M2
3.0.0
2.2.0.RC2
2.2.0.RC1
2.2.0.M3
2.2.0.M2
2.2.0.M1
2.1.0.RC3
2.1.0.RC2
2.1.0.RC1
2.1.0.M2
2.1.0.M1
2.0.0.RC2
2.0.0.RC1
2.0.0.M8
2.0.0.M7
2.0.0.M6
2.0.0.M5
2.0.0.M4
2.0.0.M3
2.0.0.M2
2.0.0.M1
1.2.0.RC1
1.2.0.M1
1.1.0.RC1
1.1.0.M1
1.0.0.RC1
1.0.0.M2
1.0.0.M1
Vulnerabilities (1)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU86024 - Creation of Temporary File in Directory with Insecure Permissions CVE-2024-22236 |
CWE-379 | Low | 3.1.10, 4.0.5, 4.1.1 | 02.02.2024 |
SB2024020212 |