ESC
Type to search CVEs in real-time
Enter open Esc close Ctrl K toggle

CVE-2026-22752

CRITICAL Export PDF

Authentication bypass by primary weakness vulnerability in Spring Security Spring Authorization Server

Authentication bypass by primary weakness vulnerability in Spring Security Spring Authorization Server. This issue affects Spring Authorization Server: from 7.0.0 through 7.0.4, from 1.5.0 through 1.5.6, from 1.4.0 through 1.4.9, from 1.3.0 through 1.3.10.

CVSS Score
9.6
CRITICAL
Published
16 Jul 2026 10:16
Modified
21 Jul 2026 15:16
Source
CIRCL

CVSS v3 Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
Attack Vector
Network
Complexity
Low
Privileges
Low
Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
None

Weaknesses (CWE)

CWE-287

Affected Systems

No vendor data available.

KEV Status

Not in CISA KEV catalog