Implementation of core API for Spring Cloud Function
93%
Total Score
99
56
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-86806 New spring-cloud-function-context is vulnerable to Incorrect Resource Transfer Between Spheres in versions 0.0.1 - 5.0.3. | 0.0.1 - 5.0.3 | Low |
AIKIDO-2026-866092 New spring-cloud-function-context is vulnerable to Path Traversal in versions 4.2.0 - 5.0.3. | 4.2.0 - 5.0.3 | Low |
CVE-2026-40990 org.springframework.cloud:spring-cloud-function-context is vulnerable to Allocation of Resources Without Limits or Throttling in versions 4.3.0 - 4.3.3, 5.0.0 - 5.0.2, 3.2.10 - 3.2.15, 4.1.0 - 4.1.9 and 4.2.0 - 4.2.5. | 3.2.10 - 3.2.154.1.0 - 4.1.94.2.0 - 4.2.5 +2 more | Medium |
CVE-2026-40989 org.springframework.cloud:spring-cloud-function-context is vulnerable to Uncontrolled Recursion in versions 4.3.0 - 4.3.3, 5.0.0 - 5.0.2, 3.2.10 - 3.2.15, 4.1.0 - 4.1.9 and 4.2.0 - 4.2.5. | 3.2.10 - 3.2.154.1.0 - 4.1.94.2.0 - 4.2.5 +2 more | Medium |
CVE-2024-22271 org.springframework.cloud:spring-cloud-function-context is vulnerable to Improper Input Validation in versions 4.0.0 - 4.0.8 and 4.1.0 - 4.1.2. | 4.0.0 - 4.0.84.1.0 - 4.1.2 | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.springframework.boot:spring-boot-autoconfigure Version 4.0.8 | — | — |
org.springframework.boot:spring-boot-restclient Version 4.0.8 | — | — |
org.springframework.boot:spring-boot-web-server Version 4.0.8 | — | — |
org.springframework.cloud:spring-cloud-function-core Version 5.0.4 | — | — |
org.springframework:spring-messaging Version 7.0.9 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant