Spring Product Security Update Advisory (CVE-2026-41842)
Overview A security update has been released to address a vulnerability in Spring products. The vulnerability is a denial-of-service (DoS) vulnerability in the Spring Framework, identified as CVE-2026-41842. Affected Products Spring Framework 7.0.0 through 7.0.7. Spring Framework 6.2.0 through 6.2.18. Spring Framework 6.1.0 through 6.1.27. Spring Framework 5.3.0 through 5.3.48.
Spring Product Security Update Advisory
Overview We have released security updates to fix vulnerabilities in Spring products. Users of affected products are advised to update to the latest version. Affected Products CVE-2025-41243 Spring Cloud Gateway version: 4.3.0 or higher and lower than 4.3.1Spring Cloud Gateway version: 4.2.0 or later but not

