ENISA EUVD · EUVD-2025-29538Official EUVD mapping0 linked advisory records.
Official EUVD recordBSI · German · WID-SEC-W-2026-0162Oracle Fusion Middleware: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Fusion Middleware ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisoryBSI · German · WID-SEC-W-2026-2445Oracle Financial Services Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Financial Services Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisoryBSI · German · WID-SEC-W-2026-1204Oracle Financial Services Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Financial Services Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisoryBSI · German · WID-SEC-W-2026-1194Oracle Communications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisoryBSI · German · WID-SEC-W-2026-0559IBM Rational Build Forge: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in IBM Rational Build Forge ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, und um Dateien zu manipulieren.
Official advisoryBSI · German · WID-SEC-W-2026-0351Dell NetWorker (Third Party Components): Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell NetWorker ausnutzen, um Angriffe zu starten, die die Integrität, Vertraulichkeit und Verfügbarkeit von Systemen beeinträchtigen.
Official advisoryBSI · German · WID-SEC-W-2026-0163Oracle Financial Services Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Financial Services Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisoryBSI · German · WID-SEC-W-2025-2060VMware Tanzu Spring Framework und Spring Security: Mehrere Schwachstellen ermöglichen Umgehen von SicherheitsvorkehrungenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in VMware Tanzu Spring Security und VMware Tanzu Spring Framework ausnutzen, um Sicherheitsvorkehrungen zu umgehen.
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0810Multiples vulnérabilités dans les produits IBMd?id=CVE-2025-36365
Référence CVE CVE-2025-36366
https://www.cve.org/CVERecord?id=CVE-2025-36366
Référence CVE CVE-2025-36387
https://www.cve.org/CVERecord?id=CVE-2025-36387
Référence CVE CVE-2025-36407
https://www.cve.org/CVERecord?id=CVE-2025-36407
Référence CVE CVE-2025-36425
https://www.cve.org/CVERecord?id=CVE-2025-36425
Référence CVE CVE-2025-36427
https://www.cve.org/CVERecord?id=CVE-2025-36427
Référence CVE CVE-2025-36428
https://www.cve.org/CVERecord?id=CVE-2025-36428
Référence CVE CVE-2025-36442
https://www.cve.org/CVERecord?id=CVE-2025-36442
Référence CVE CVE-2025-40909
https://www.cve.org/CVERecord?id=CVE-2025-40909
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-46392
https://www.cve.org/CVERecord?id=CVE-2025-46392
Référence CVE CVE-2025-48924
https://www.cve.org/CVERecord?id=CVE-2025-48924
Référence CVE CVE-2025-55163
https://www.cve.org/CVERecord?id=CVE-2025-55163
Référence CVE CVE-2025-58056
https://www.cve.org/CVERecord?id=CVE-2025-58056
Référence CVE CVE-2025-58057
https://www.cve.org/CVERecord?id=CVE-2025-58057
Référence CVE CVE-2025-62718
https://www.cve.org/CVERecord?id=CVE-2025-62718
Référence CVE CVE-2025-66199
https://www.cve.org/CVERecord?id=
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0788Multiples vulnérabilités dans les produits IBMrd?id=CVE-2024-7246
Référence CVE CVE-2025-14087
https://www.cve.org/CVERecord?id=CVE-2025-14087
Référence CVE CVE-2025-14512
https://www.cve.org/CVERecord?id=CVE-2025-14512
Référence CVE CVE-2025-14813
https://www.cve.org/CVERecord?id=CVE-2025-14813
Référence CVE CVE-2025-22233
https://www.cve.org/CVERecord?id=CVE-2025-22233
Référence CVE CVE-2025-22235
https://www.cve.org/CVERecord?id=CVE-2025-22235
Référence CVE CVE-2025-41234
https://www.cve.org/CVERecord?id=CVE-2025-41234
Référence CVE CVE-2025-41235
https://www.cve.org/CVERecord?id=CVE-2025-41235
Référence CVE CVE-2025-41242
https://www.cve.org/CVERecord?id=CVE-2025-41242
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-52999
https://www.cve.org/CVERecord?id=CVE-2025-52999
Référence CVE CVE-2025-64756
https://www.cve.org/CVERecord?id=CVE-2025-64756
Référence CVE CVE-2026-10845
https://www.cve.org/CVERecord?id=CVE-2026-10845
Référence CVE CVE-2026-22007
https://www.cve.org/CVERecord?id=CVE-2026-22007
Référence CVE CVE-2026-22008
https://www.cve.org/CVERecord?id=CVE-2026-22008
Référence CVE CVE-2026-22013
https://www.cve.org/CVERecord?id=CVE-2026-22013
Référence CVE CVE-2026-22016
https://www.cve.org/CVERecord?id=
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0667Multiples vulnérabilités dans les produits IBMd?id=CVE-2025-12758
Référence CVE CVE-2025-12816
https://www.cve.org/CVERecord?id=CVE-2025-12816
Référence CVE CVE-2025-13333
https://www.cve.org/CVERecord?id=CVE-2025-13333
Référence CVE CVE-2025-13465
https://www.cve.org/CVERecord?id=CVE-2025-13465
Référence CVE CVE-2025-14009
https://www.cve.org/CVERecord?id=CVE-2025-14009
Référence CVE CVE-2025-14813
https://www.cve.org/CVERecord?id=CVE-2025-14813
Référence CVE CVE-2025-15284
https://www.cve.org/CVERecord?id=CVE-2025-15284
Référence CVE CVE-2025-22870
https://www.cve.org/CVERecord?id=CVE-2025-22870
Référence CVE CVE-2025-40252
https://www.cve.org/CVERecord?id=CVE-2025-40252
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-5187
https://www.cve.org/CVERecord?id=CVE-2025-5187
Référence CVE CVE-2025-53643
https://www.cve.org/CVERecord?id=CVE-2025-53643
Référence CVE CVE-2025-58754
https://www.cve.org/CVERecord?id=CVE-2025-58754
Référence CVE CVE-2025-59471
https://www.cve.org/CVERecord?id=CVE-2025-59471
Référence CVE CVE-2025-59472
https://www.cve.org/CVERecord?id=CVE-2025-59472
Référence CVE CVE-2025-6176
https://www.cve.org/CVERecord?id=CVE-2025-6176
Référence CVE CVE-2025-62718
https://www.cve.org/CVERecord?id=CVE-
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0556Multiples vulnérabilités dans les produits VMwareg/CVERecord?id=CVE-2025-30721
Référence CVE CVE-2025-31672
https://www.cve.org/CVERecord?id=CVE-2025-31672
Référence CVE CVE-2025-3263
https://www.cve.org/CVERecord?id=CVE-2025-3263
Référence CVE CVE-2025-3264
https://www.cve.org/CVERecord?id=CVE-2025-3264
Référence CVE CVE-2025-33042
https://www.cve.org/CVERecord?id=CVE-2025-33042
Référence CVE CVE-2025-3730
https://www.cve.org/CVERecord?id=CVE-2025-3730
Référence CVE CVE-2025-3777
https://www.cve.org/CVERecord?id=CVE-2025-3777
Référence CVE CVE-2025-3933
https://www.cve.org/CVERecord?id=CVE-2025-3933
Référence CVE CVE-2025-41242
https://www.cve.org/CVERecord?id=CVE-2025-41242
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-4138
https://www.cve.org/CVERecord?id=CVE-2025-4138
Référence CVE CVE-2025-4207
https://www.cve.org/CVERecord?id=CVE-2025-4207
Référence CVE CVE-2025-4330
https://www.cve.org/CVERecord?id=CVE-2025-4330
Référence CVE CVE-2025-4435
https://www.cve.org/CVERecord?id=CVE-2025-4435
Référence CVE CVE-2025-4516
https://www.cve.org/CVERecord?id=CVE-2025-4516
Référence CVE CVE-2025-4517
https://www.cve.org/CVERecord?id=CVE-2025-4517
Référence CVE CVE-2025-46392
https://www.cve.org/CVERecord?id=CVE-2025-46392
Référence CVE CVE-2025-47914
https://www.cve.org/CVERecord?id=CVE-2025-479
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0292Multiples vulnérabilités dans les produits IBMd?id=CVE-2025-12383
Référence CVE CVE-2025-13702
https://www.cve.org/CVERecord?id=CVE-2025-13702
Référence CVE CVE-2025-13718
https://www.cve.org/CVERecord?id=CVE-2025-13718
Référence CVE CVE-2025-13723
https://www.cve.org/CVERecord?id=CVE-2025-13723
Référence CVE CVE-2025-13726
https://www.cve.org/CVERecord?id=CVE-2025-13726
Référence CVE CVE-2025-14811
https://www.cve.org/CVERecord?id=CVE-2025-14811
Référence CVE CVE-2025-30749
https://www.cve.org/CVERecord?id=CVE-2025-30749
Référence CVE CVE-2025-30754
https://www.cve.org/CVERecord?id=CVE-2025-30754
Référence CVE CVE-2025-30761
https://www.cve.org/CVERecord?id=CVE-2025-30761
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-48734
https://www.cve.org/CVERecord?id=CVE-2025-48734
Référence CVE CVE-2025-48976
https://www.cve.org/CVERecord?id=CVE-2025-48976
Référence CVE CVE-2025-50059
https://www.cve.org/CVERecord?id=CVE-2025-50059
Référence CVE CVE-2025-50106
https://www.cve.org/CVERecord?id=CVE-2025-50106
Référence CVE CVE-2025-5115
https://www.cve.org/CVERecord?id=CVE-2025-5115
Référence CVE CVE-2025-53057
https://www.cve.org/CVERecord?id=CVE-2025-53057
Référence CVE CVE-2025-53066
https://www.cve.org/CVERecord?id=CV
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0249Multiples vulnérabilités dans les produits IBMd?id=CVE-2025-36425
Référence CVE CVE-2025-36427
https://www.cve.org/CVERecord?id=CVE-2025-36427
Référence CVE CVE-2025-36428
https://www.cve.org/CVERecord?id=CVE-2025-36428
Référence CVE CVE-2025-36442
https://www.cve.org/CVERecord?id=CVE-2025-36442
Référence CVE CVE-2025-37797
https://www.cve.org/CVERecord?id=CVE-2025-37797
Référence CVE CVE-2025-37958
https://www.cve.org/CVERecord?id=CVE-2025-37958
Référence CVE CVE-2025-38086
https://www.cve.org/CVERecord?id=CVE-2025-38086
Référence CVE CVE-2025-38089
https://www.cve.org/CVERecord?id=CVE-2025-38089
Référence CVE CVE-2025-38110
https://www.cve.org/CVERecord?id=CVE-2025-38110
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-4447
https://www.cve.org/CVERecord?id=CVE-2025-4447
Référence CVE CVE-2025-45582
https://www.cve.org/CVERecord?id=CVE-2025-45582
Référence CVE CVE-2025-4673
https://www.cve.org/CVERecord?id=CVE-2025-4673
Référence CVE CVE-2025-47906
https://www.cve.org/CVERecord?id=CVE-2025-47906
Référence CVE CVE-2025-47912
https://www.cve.org/CVERecord?id=CVE-2025-47912
Référence CVE CVE-2025-47913
https://www.cve.org/CVERecord?id=CVE-2025-47913
Référence CVE CVE-2025-47935
https://www.cve.org/CVERecord?id=CVE-
Official advisoryCERT-FR · French · CERTFR-2026-AVI-0109Multiples vulnérabilités dans les produits IBMd?id=CVE-2025-36131
Référence CVE CVE-2025-36136
https://www.cve.org/CVERecord?id=CVE-2025-36136
Référence CVE CVE-2025-36184
https://www.cve.org/CVERecord?id=CVE-2025-36184
Référence CVE CVE-2025-36185
https://www.cve.org/CVERecord?id=CVE-2025-36185
Référence CVE CVE-2025-36186
https://www.cve.org/CVERecord?id=CVE-2025-36186
Référence CVE CVE-2025-36384
https://www.cve.org/CVERecord?id=CVE-2025-36384
Référence CVE CVE-2025-39697
https://www.cve.org/CVERecord?id=CVE-2025-39697
Référence CVE CVE-2025-39971
https://www.cve.org/CVERecord?id=CVE-2025-39971
Référence CVE CVE-2025-41234
https://www.cve.org/CVERecord?id=CVE-2025-41234
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-46762
https://www.cve.org/CVERecord?id=CVE-2025-46762
Référence CVE CVE-2025-48050
https://www.cve.org/CVERecord?id=CVE-2025-48050
Référence CVE CVE-2025-48734
https://www.cve.org/CVERecord?id=CVE-2025-48734
Référence CVE CVE-2025-48924
https://www.cve.org/CVERecord?id=CVE-2025-48924
Référence CVE CVE-2025-54313
https://www.cve.org/CVERecord?id=CVE-2025-54313
Référence CVE CVE-2025-55163
https://www.cve.org/CVERecord?id=CVE-2025-55163
Référence CVE CVE-2025-56200
https://www.cve.org/CVERecord?id=
Official advisoryCERT-FR · French · CERTFR-2025-AVI-1100Multiples vulnérabilités dans les produits AtlassianDe multiples vulnérabilités ont été découvertes dans les produits Atlassian. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
Official advisoryCERT-FR · French · CERTFR-2025-AVI-1057Multiples vulnérabilités dans les produits VMwareord?id=CVE-2025-29770
Référence CVE CVE-2025-30165
https://www.cve.org/CVERecord?id=CVE-2025-30165
Référence CVE CVE-2025-30202
https://www.cve.org/CVERecord?id=CVE-2025-30202
Référence CVE CVE-2025-32381
https://www.cve.org/CVERecord?id=CVE-2025-32381
Référence CVE CVE-2025-32414
https://www.cve.org/CVERecord?id=CVE-2025-32414
Référence CVE CVE-2025-32415
https://www.cve.org/CVERecord?id=CVE-2025-32415
Référence CVE CVE-2025-32434
https://www.cve.org/CVERecord?id=CVE-2025-32434
Référence CVE CVE-2025-32444
https://www.cve.org/CVERecord?id=CVE-2025-32444
Référence CVE CVE-2025-3576
https://www.cve.org/CVERecord?id=CVE-2025-3576
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-43859
https://www.cve.org/CVERecord?id=CVE-2025-43859
Référence CVE CVE-2025-4516
https://www.cve.org/CVERecord?id=CVE-2025-4516
Référence CVE CVE-2025-46570
https://www.cve.org/CVERecord?id=CVE-2025-46570
Référence CVE CVE-2025-47277
https://www.cve.org/CVERecord?id=CVE-2025-47277
Référence CVE CVE-2025-48887
https://www.cve.org/CVERecord?id=CVE-2025-48887
Référence CVE CVE-2025-48956
https://www.cve.org/CVERecord?id=CVE-2025-48956
Référence CVE CVE-2025-4947
https://www.cve.org/CVERecord?id=CVE-2025-4947
Référence CVE CVE-2025-49794
https://www.cve.org/CVERecord?id=CVE-
Official advisoryCERT-FR · French · CERTFR-2025-AVI-1025Multiples vulnérabilités dans les produits AtlassianDe multiples vulnérabilités ont été découvertes dans les produits Atlassian. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et une falsification de requêtes côté serveur (SSRF).
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0969Multiples vulnérabilités dans les produits VMwareord?id=CVE-2025-40027
Référence CVE CVE-2025-40364
https://www.cve.org/CVERecord?id=CVE-2025-40364
Référence CVE CVE-2025-4056
https://www.cve.org/CVERecord?id=CVE-2025-4056
Référence CVE CVE-2025-40778
https://www.cve.org/CVERecord?id=CVE-2025-40778
Référence CVE CVE-2025-40780
https://www.cve.org/CVERecord?id=CVE-2025-40780
Référence CVE CVE-2025-40909
https://www.cve.org/CVERecord?id=CVE-2025-40909
Référence CVE CVE-2025-41232
https://www.cve.org/CVERecord?id=CVE-2025-41232
Référence CVE CVE-2025-41242
https://www.cve.org/CVERecord?id=CVE-2025-41242
Référence CVE CVE-2025-41244
https://www.cve.org/CVERecord?id=CVE-2025-41244
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-41254
https://www.cve.org/CVERecord?id=CVE-2025-41254
Référence CVE CVE-2025-4138
https://www.cve.org/CVERecord?id=CVE-2025-4138
Référence CVE CVE-2025-4207
https://www.cve.org/CVERecord?id=CVE-2025-4207
Référence CVE CVE-2025-4287
https://www.cve.org/CVERecord?id=CVE-2025-4287
Référence CVE CVE-2025-4330
https://www.cve.org/CVERecord?id=CVE-2025-4330
Référence CVE CVE-2025-4373
https://www.cve.org/CVERecord?id=CVE-2025-4373
Référence CVE CVE-2025-43857
https://www.cve.org/CVERecord?id=CVE-2025-4
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0967Multiples vulnérabilités dans les produits VMwared?id=CVE-2025-30722
Référence CVE CVE-2025-30749
https://www.cve.org/CVERecord?id=CVE-2025-30749
Référence CVE CVE-2025-30754
https://www.cve.org/CVERecord?id=CVE-2025-30754
Référence CVE CVE-2025-30761
https://www.cve.org/CVERecord?id=CVE-2025-30761
Référence CVE CVE-2025-40025
https://www.cve.org/CVERecord?id=CVE-2025-40025
Référence CVE CVE-2025-40026
https://www.cve.org/CVERecord?id=CVE-2025-40026
Référence CVE CVE-2025-40027
https://www.cve.org/CVERecord?id=CVE-2025-40027
Référence CVE CVE-2025-41242
https://www.cve.org/CVERecord?id=CVE-2025-41242
Référence CVE CVE-2025-41244
https://www.cve.org/CVERecord?id=CVE-2025-41244
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-4138
https://www.cve.org/CVERecord?id=CVE-2025-4138
Référence CVE CVE-2025-4207
https://www.cve.org/CVERecord?id=CVE-2025-4207
Référence CVE CVE-2025-4330
https://www.cve.org/CVERecord?id=CVE-2025-4330
Référence CVE CVE-2025-4435
https://www.cve.org/CVERecord?id=CVE-2025-4435
Référence CVE CVE-2025-4516
https://www.cve.org/CVERecord?id=CVE-2025-4516
Référence CVE CVE-2025-4517
https://www.cve.org/CVERecord?id=CVE-2025-4517
Référence CVE CVE-2025-46551
https://www.cve.org/CVERecord?id=CVE-2025-465
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0861Multiples vulnérabilités dans les produits IBMord?id=CVE-2023-24532
Référence CVE CVE-2023-44487
https://www.cve.org/CVERecord?id=CVE-2023-44487
Référence CVE CVE-2024-22243
https://www.cve.org/CVERecord?id=CVE-2024-22243
Référence CVE CVE-2024-22259
https://www.cve.org/CVERecord?id=CVE-2024-22259
Référence CVE CVE-2024-3651
https://www.cve.org/CVERecord?id=CVE-2024-3651
Référence CVE CVE-2024-45337
https://www.cve.org/CVERecord?id=CVE-2024-45337
Référence CVE CVE-2025-22868
https://www.cve.org/CVERecord?id=CVE-2025-22868
Référence CVE CVE-2025-22870
https://www.cve.org/CVERecord?id=CVE-2025-22870
Référence CVE CVE-2025-27789
https://www.cve.org/CVERecord?id=CVE-2025-27789
Référence CVE CVE-2025-41248
https://www.cve.org/CVERecord?id=CVE-2025-41248
Référence CVE CVE-2025-41249
https://www.cve.org/CVERecord?id=CVE-2025-41249
Référence CVE CVE-2025-57810
https://www.cve.org/CVERecord?id=CVE-2025-57810
Référence CVE CVE-2025-58754
https://www.cve.org/CVERecord?id=CVE-2025-58754
Référence CVE CVE-2025-7783
https://www.cve.org/CVERecord?id=CVE-2025-7783
Gestion détaillée du document
le 10 octobre 2025
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À propos
Contact
cyber.gouv.fr
service-public.fr
legifrance.gouv.fr
info.gouv.fr
france.fr
info.gouv.fr/risques
Premier Ministre / Secrétariat Général de l
Official advisoryCERT-FR · French · CERTFR-2025-AVI-0792Multiples vulnérabilités dans les produits SpringDe multiples vulnérabilités ont été découvertes dans les produits Spring. Elles permettent à un attaquant de provoquer un contournement de la politique de sécurité.
Official advisoryNCSC-NL · Dutch · NCSC-2026-0258Kwetsbaarheden verholpen in Oracle Financial ServicesMultiple vulnerabilities affect Spring Framework versions prior to 6.4.11 and 6.5.5, Oracle Financial Services Model Management and Governance 8.1.3.2, and Oracle Banking Branch 14.5.0.0.0 to 14.8.0.0.0, enabling unauthorized access and sensitive data disclosure.
Official advisoryNCSC-NL · Dutch · NCSC-2026-0027Kwetsbaarheden verholpen in Oracle Fusion MiddlewareRecent vulnerabilities in Oracle Financial Services Model Management and Spring Framework versions expose critical data and may lead to authorization bypass, with significant confidentiality impacts.
Official advisoryNCSC-NL · Dutch · NCSC-2026-0025Kwetsbaarheden verholpen in Oracle Financial ServicesRecent vulnerabilities in Oracle Financial Services Model Management and Spring Framework versions expose critical data and may lead to authorization bypass, with significant confidentiality impacts.
Official advisoryNCSC-NL · Dutch · NCSC-2025-0293Kwetsbaarheden verholpen in Spring FrameworkDe kwetsbaarheden bevinden zich in de manier waarop het Spring Security framework annotaties detecteert, met name in typehiërarchieën die gebruikmaken van geparametriseerde supertypes met onbeperkte generics. Dit kan leiden tot een autorisatie-omzeiling wanneer gebruik wordt gemaakt van methodesecurity-annotaties zoals @PreAuthorize, vooral als @EnableMethodSecurity is ingeschakeld. Deze problemen zijn bijzonder kritisch voor applicaties die afhankelijk zijn van deze beveiligingsannotaties voor toegangscontrole.
Official advisory