Maven package intelligence
org.springframework.cloud:spring-cloud-function-context Known Exploited Vulnerabilities
Track evidence-backed exploitation affecting the Maven package org.springframework.cloud:spring-cloud-function-context, including the gap beyond CISA KEV, confidence assessments, and sensor observations.
- Total KEVs
- 1
- Known exploited vulnerability affecting org.springframework.cloud:spring-cloud-function-context
- In CISA KEV
- 1
- Records also listed in the official catalog
- Beyond CISA KEV
- 0
- Additional exploited vulnerabilities absent from CISA KEV
- Sensor Observed
- 0
- org.springframework.cloud:spring-cloud-function-context KEVs with sensor-observed exploitation activity
Review org.springframework.cloud:spring-cloud-function-context exploitation against the versions you run
All one exploited org.springframework.cloud:spring-cloud-function-context vulnerability tracked here is also listed in CISA KEV.
- 100%
- Covered by CISA
- 0%
- Beyond CISA
Attested org.springframework.cloud:spring-cloud-function-context vulnerabilities
1 known exploited vulnerability affecting this package.
| Vulnerability | CISA KEV | Added |
|---|---|---|
|
CVE-2022-22963
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to... |
In CISA | 25 Aug 2022 |
Recurring weakness patterns
Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection') and Improper Control of Generation of Code ('Code Injection') account for mapped occurrences across this org.springframework.cloud:spring-cloud-function-context KEV portfolio.