A vulnerability identified as CVE-2025-22235 has been found in Spring Boot. It involves the EndpointRequest.to() method creating incorrect matchers if an actuator endpoint is not exposed.

1m read timeFrom spring.io
Post cover image
Table of contents
DescriptionAffected Spring Products and VersionsMitigationCreditReferences

Sort: