spring-ai-client-chat is vulnerable to Improper Access Control
59
Medium Risk
Affected versions of Spring AI are vulnerable to Improper Access Control. An attacker can bypass conversation isolation and exfiltrate sensitive memory from other users’ chat histories, including secrets and credentials, by injecting filter logic through conversationId. Only applications that use VectorStoreChatMemoryAdvisor and pass user-supplied input as a conversationId are affected.
You are affected if using a vulnerable version and your applications uses VectorStoreChatMemoryAdvisor.
spring-ai-client-chat is vulnerable to Improper Access Control in versions 1.1.0 - 1.1.4 and 1.0.0 - 1.0.5.
Upgrade the org.springframework.ai:spring-ai-client-chat library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant