Insecure Temporary File in Spring AI - CVE-2026-47852
Published: August 28, 2026
Vulnerability details
The vulnerability allows a remote attacker to tamper with model integrity.
The vulnerability exists due to improper access control in the ONNX model cache directory handling when resolving the deterministic cache path. A remote attacker can pre-create the cache path and plant a malicious ONNX model file to tamper with model integrity.
This issue is exploitable on a multi-user host.