Improper Caching Vulnerability in Spring Cloud Stream by Pivotal Software
CVE-2026-59304

3.1LOW

Key Information:

Vendor

Spring

Vendor
CVE Published:
27 August 2026

What is CVE-2026-59304?

An improper caching issue was identified in Spring Cloud Stream, where the original content type is not adequately cached. This can potentially lead to unexpected behavior in data handling and could expose systems to various security risks. Users of Spring Cloud Stream versions 5.0.0 to 5.0.2 and 4.2.0 to 4.3.3 are particularly affected and should assess their systems for vulnerabilities. Refer to the official security advisory for more details and recommended remediation actions.

Affected Version(s)

Spring Cloud Stream 5.0.0 <= 5.0.2

Spring Cloud Stream 4.3.0 <= 4.3.3

Spring Cloud Stream 4.2.0 <= 4.2.6

References

CVSS V3.1

Score:
3.1
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.