Input validation error in Spring Cloud Function - CVE-2026-59291
Published: August 31, 2026
Vulnerability details
The vulnerability allows a remote user to perform server-side request forgery and modify data.
The vulnerability exists due to improper input validation in Spring Cloud Function when processing crafted input. A remote privileged user can send specially crafted input to perform server-side request forgery and modify data.
User interaction is required.