Spring Expression Language (SpEL)
94%
Total Score
100
100
80
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-687238 New spring-expression is vulnerable to Expression Language Injection in versions 0.0.1 - 7.0.8. | 0.0.1 - 7.0.8 | Medium |
AIKIDO-2026-445269 New spring-expression is vulnerable to Denial of Service (DoS) in versions 0.0.1 - 7.0.8. | 0.0.1 - 7.0.8 | Medium |
CVE-2026-41852 org.springframework:spring-expression is vulnerable to Incorrect Authorization in versions 7.0.0 - 7.0.7, 6.2.0 - 6.2.18, 6.1.0 - 6.1.21 and 0.0.0 - 5.3.39. | 0.0.0 - 5.3.396.1.0 - 6.1.216.2.0 - 6.2.18 +1 more | Low |
CVE-2026-41851 org.springframework:spring-expression is vulnerable to Allocation of Resources Without Limits or Throttling in versions 7.0.0 - 7.0.7, 6.2.0 - 6.2.18, 6.1.0 - 6.1.21 and 0.0.0 - 5.3.39. | 0.0.0 - 5.3.396.1.0 - 6.1.216.2.0 - 6.2.18 +1 more | Medium |
CVE-2026-41850 org.springframework:spring-expression is vulnerable to Inefficient Algorithmic Complexity in versions 7.0.0 - 7.0.7, 6.2.0 - 6.2.18, 6.1.0 - 6.1.21 and 0.0.0 - 5.3.39. | 0.0.0 - 5.3.396.1.0 - 6.1.216.2.0 - 6.2.18 +1 more | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.springframework:spring-core Version 7.1.0-M1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant