CVE-2026-59281 | VMware Spring Framework up to 7.0.8 Spring MVC/WebFlux Errors.getFieldErrors/Errors.getFieldError cross site scripting (WID-SEC-2026-2955)

SecurityVulns

A vulnerability has been found in VMware Spring Framework up to 7.0.8 and classified as problematic. This affects the function Errors.getFieldErrors/Errors.getFieldError of the component Spring MVC/WebFlux. The manipulation leads to cross site scripting.

This vulnerability is documented as CVE-2026-59281. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More