Server-Side Request Forgery (SSRF) in Spring AI - CVE-2026-22742
Published: April 28, 2026
Spring AI
Detailed vulnerability description
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to insufficient validation of media URLs in BedrockProxyChatModel when processing multimodal messages that include user-supplied media URLs. A remote attacker can supply a crafted media URL to induce the server to issue HTTP requests to unintended internal or external destinations to disclose sensitive information.