Package Health

org.springframework.cloud:spring-cloud-gateway-server-webflux

Spring Cloud Gateway Server WebFlux

Latest 5.0.3MavenMaven

87%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

99

Dependencies
Dependencies
Evaluates the health and security of package dependencies

47

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Are you affected? Scan for Free

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2026-790325 New
spring-cloud-gateway-server-webflux is vulnerable to Server-Side Request Forgery (SSRF) in versions 5.0.0 - 5.0.2.
5.0.0 - 5.0.2
High
CVE-2025-41253
org.springframework.cloud:spring-cloud-gateway-server-webflux is vulnerable to Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection').
High
CVE-2025-41243
org.springframework.cloud:spring-cloud-gateway-server-webflux is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 3.1.0 - 3.1.10, 4.0.0 - 4.1.10, 4.2.0 - 4.2.5 and 4.3.0 - 4.3.1.
3.1.0 - 3.1.104.0.0 - 4.1.104.2.0 - 4.2.5 +1 more
Critical

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
org.springframework.boot:spring-boot-starter
Version 4.0.8
org.springframework.boot:spring-boot-starter-validation
Version 4.0.8
org.springframework.boot:spring-boot-starter-oauth2-client
Version 4.0.8
org.springframework.boot:spring-boot-starter-actuator
Version 4.0.8
io.micrometer:micrometer-tracing
Version 1.6.7

Weekly Downloads

Info

Last Published
7 days ago
Created
1 year ago