Ad

CVE-2026-22738

CRITICAL CVSS 3.1: 9.8 EPSS 0.04%
Updated Apr 16, 2026
Spring
Parameter Value
CVSS 9.8 (CRITICAL)
Affected Versions 1.0.0 — 1.1.4
Fixed In 1.0.5
Type CWE-917
Vendor Spring
Public PoC No

In Spring AI, a SpEL injection vulnerability exists in SimpleVectorStore when a user-supplied value is used as a filter expression key. A malicious actor could exploit this to execute arbitrary code. Only applications that use SimpleVectorStore and pass user-supplied input as a filter expression key are affected.

This issue affects Spring AI: from 1.0.0 before 1.0.5, from 1.1.0 before 1.1.4.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Privileges Required
None
No privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
High
Complete data leak
Integrity
High
Complete data modification
Availability
High
Complete denial of service

CVSS Vector v3.1

Weakness Type (CWE)

Vulnerable Products 2

Configuration From (including) Up to (excluding)
Vmware Spring_Ai
cpe:2.3:a:vmware:spring_ai:*:*:*:*:*:*:*:*
1.0.0 1.0.5
Vmware Spring_Ai
cpe:2.3:a:vmware:spring_ai:*:*:*:*:*:*:*:*
1.1.0 1.1.4