Cache Isolation Vulnerability in Spring AI by Pivotal Software
CVE-2026-59308
4.2MEDIUM
What is CVE-2026-59308?
A vulnerability in Spring AI's Semantic Cache support allows the potential for cached responses to be inadvertently shared across unrelated system prompts due to improper isolation of context hashes. This can lead to scenarios where sensitive or contextual information may be exposed unintentionally, thus undermining the privacy and integrity of the system’s operations.
Affected Version(s)
Spring AI 2.0.0
