216.73.217.22

CVE-2026-40967

· Published 28/04/2026 07:16 · Modified 29/04/2026 19:04

Labels: CVE-2026-40967 2026-04-28CVE-2026-40967CWE-94[email protected]

Essential information

Published
28/04/2026 07:16
Modified
29/04/2026 19:04
Author
Creator
CVSS
8.6 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L

CVSS metrics

Description

In Spring AI, various FilterExpressionConverter implementations accept a filter expression object and translate them to specific vector store query languages. In several cases, keys and values are not properly escaped, leading to the ability to alter the query. Affected versions: Spring AI: 1.0.0 - 1.0.5 (fixed in 1.0.6), 1.1.0 - 1.1.4 (fixed in 1.1.5)

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
vmware / spring ai cpe:2.3:a:vmware:spring_ai:*:*:*:*:*:*:*:*
vmware / spring ai cpe:2.3:a:vmware:spring_ai:*:*:*:*:*:*:*:*

References