Get real-time updates on Telegram
P5Verified
TuxCare security update for org.springframework (35 CVEs)
CVE-2018-11039, CVE-2018-1257, CVE-2018-1271, CVE-2018-1272, CVE-2018-15756, CVE-2022-22965, CVE-2022-22971, CVE-2023-20861, CVE-2024-22243, CVE-2024-38816, CVE-2024-38819, CVE-2025-41242, CVE-2025-41254, CVE-2026-22735, CVE-2026-22737, CVE-2026-22741, CVE-2026-22745, CVE-2026-41838, CVE-2026-41839, CVE-2026-41844, CVE-2026-41845, CVE-2026-41848, CVE-2026-41849, CVE-2026-41852, CVE-2026-41853, CVE-2026-41855, CVE-2026-47884, CVE-2026-47886, CVE-2026-47887, CVE-2026-47891, CVE-2026-47893, CVE-2026-59280, CVE-2026-59281, CVE-2026-59282, CVE-2026-59314 affects org.springframework:spring-aop.
- CVE
- CVE-2018-11039, CVE-2018-1257, CVE-2018-1271, CVE-2018-1272, CVE-2018-15756, CVE-2022-22965, CVE-2022-22971, CVE-2023-20861, CVE-2024-22243, CVE-2024-38816, CVE-2024-38819, CVE-2025-41242, CVE-2025-41254, CVE-2026-22735, CVE-2026-22737, CVE-2026-22741, CVE-2026-22745, CVE-2026-41838, CVE-2026-41839, CVE-2026-41844, CVE-2026-41845, CVE-2026-41848, CVE-2026-41849, CVE-2026-41852, CVE-2026-41853, CVE-2026-41855, CVE-2026-47884, CVE-2026-47886, CVE-2026-47887, CVE-2026-47891, CVE-2026-47893, CVE-2026-59280, CVE-2026-59281, CVE-2026-59282, CVE-2026-59314
- Product
- org.springframework:spring-aop
- CCR priority
- 0.7 /100 (P5)
- EPSS
- 0.02746 · percentile 0.85682 · 2026-10-03
- KEV
- no
Affected products
- org.springframework:spring-aop · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-aspects · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-beans · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-context · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-context-indexer · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-context-support · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-core · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-expression · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-framework-bom · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-instrument · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-jcl · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-jdbc · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-jms · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-messaging · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-orm · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-oxm · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-test · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-tx · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-web · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-webflux · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-webmvc · Fixed version: 5.0.0.RELEASE-tuxcare.1
- org.springframework:spring-websocket · Fixed version: 5.0.0.RELEASE-tuxcare.1
Provenance
- OSV.dev · Source record · observed 2026-10-04 13:35:46.972631+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2018-11039.html