spring-cloud-config-server
91%
Total Score
99
41
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-247148 New spring-cloud-config-server is vulnerable to Path Traversal in versions 0.0.1 - 5.0.4. | 0.0.1 - 5.0.4 | Medium |
AIKIDO-2026-891560 New spring-cloud-config-server is vulnerable to Denial of Service (DoS) in versions 0.0.1 - 5.0.4. | 0.0.1 - 5.0.4 | Medium |
AIKIDO-2026-469111 New spring-cloud-config-server is vulnerable to Race Condition (TOCTOU) in versions 0.0.1 - 5.0.4. | 0.0.1 - 5.0.4 | High |
AIKIDO-2026-10770 spring-cloud-config-server is vulnerable to Race Condition (TOCTOU) in versions 0.0.1 - 3.1.13, 4.0.0 - 4.1.9, 4.2.0 - 4.2.6, 4.3.0 - 4.3.2 and 5.0.0 - 5.0.2. | 0.0.1 - 3.1.134.0.0 - 4.1.94.2.0 - 4.2.6 +2 more | High |
AIKIDO-2026-10773 spring-cloud-config-server is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.1 - 3.1.13, 4.0.0 - 4.1.9, 4.2.0 - 4.2.6, 4.3.0 - 4.3.2 and 5.0.0 - 5.0.2. | 0.0.1 - 3.1.134.0.0 - 4.1.94.2.0 - 4.2.6 +2 more | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.springframework.boot:spring-boot-configuration-processor Version 4.0.8 | — | — |
org.springframework.boot:spring-boot-starter-jdbc Version 4.0.8 | — | — |
org.springframework.boot:spring-boot-starter-data-redis Version 4.0.8 | — | — |
org.springframework.cloud:spring-cloud-config-client Version 5.0.5 | — | — |
org.springframework.boot:spring-boot-starter-actuator Version 4.0.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant