Spring Product Security Update Advisory

Spring Product Security Update Advisory

Overview A security update has been released to address vulnerabilities found in Spring products. Environments using these products must be updated to the latest version with security patches. Affected Products and Vulnerabilities CVE-2026-41708: Denial-of-Service (DoS) vulnerability in Spring Cloud Sleuth. Affected Versions: 3.1.0 through 3.1.13. Fixed version: 3.1.14. CVE-2026-41838: Predictable