Spring Data REST - Core
97%
Total Score
99
81
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-11169 spring-data-rest-core is vulnerable to Improper Access Control in versions 0.0.1 - 3.7.19, 4.0.0 - 4.3.16, 4.4.0 - 4.4.14, 4.5.0 - 4.5.11 and 5.0.0 - 5.0.5. | 0.0.1 - 3.7.194.0.0 - 4.3.164.4.0 - 4.4.14 +2 more | Medium |
AIKIDO-2026-11172 spring-data-rest-core is vulnerable to Generation of Error Message Containing Sensitive Information in versions 0.0.1 - 3.7.19, 4.0.0 - 4.3.16, 4.4.0 - 4.4.14, 4.5.0 - 4.5.11 and 5.0.0 - 5.0.5. | 0.0.1 - 3.7.194.0.0 - 4.3.164.4.0 - 4.4.14 +2 more | Medium |
AIKIDO-2026-11173 spring-data-rest-core is vulnerable to SpEL Expression Injection in versions 0.0.1 - 3.7.19, 4.0.0 - 4.3.16, 4.4.0 - 4.4.14, 4.5.0 - 4.5.11 and 5.0.0 - 5.0.5. | 0.0.1 - 3.7.194.0.0 - 4.3.164.4.0 - 4.4.14 +2 more | High |
AIKIDO-2026-11175 spring-data-rest-core is vulnerable to Improper Access Control in versions 0.0.1 - 3.7.19, 4.0.0 - 4.3.16, 4.4.0 - 4.4.14, 4.5.0 - 4.5.11 and 5.0.0 - 5.0.5. | 0.0.1 - 3.7.194.0.0 - 4.3.164.4.0 - 4.4.14 +2 more | High |
CVE-2022-31679 org.springframework.data:spring-data-rest-core is vulnerable to Security Vulnerability in versions 3.6.0 - 3.6.7 and 3.7.0 - 3.7.3. | 3.6.0 - 3.6.73.7.0 - 3.7.3 | Low |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.springframework:spring-tx Version * | — | — |
org.springframework.hateoas:spring-hateoas Version 3.1.1 | — | — |
org.springframework.data:spring-data-commons Version 4.1.0 | — | — |
org.springframework.plugin:spring-plugin-core Version 4.1.0 | — | — |
org.atteo:evo-inflector Version 1.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant