Advisory Database
  • Advisories
  • Dependency Scanning
  1. maven
  2. ›
  3. org.springframework.cloud/spring-cloud-config-server
  4. ›
  5. CVE-2026-40982

CVE-2026-40982: Spring Cloud Config vulnerable to Path Traversal

May 7, 2026 (updated May 11, 2026)

Spring Cloud Config allows applications to serve arbitrary text and binary files through the spring-cloud-config-server module. A malicious user, or attacker, can send a request using a specially crafted URL that can lead to a directory traversal attack. Spring Cloud Config 3.1.x: affected from 3.1.0 through 3.1.13 (inclusive); upgrade to 3.1.14 or greater (Enterprise Support Only). Spring Cloud Config 4.1.x: affected from 4.1.0 through 4.1.9 (inclusive); upgrade to 4.1.10 or greater (Enterprise Support Only). Spring Cloud Config 4.2.x: affected from 4.2.0 through 4.2.6 (inclusive); upgrade to 4.2.7 or greater (Enterprise Support Only). Spring Cloud Config 4.3.x: affected from 4.3.0 through 4.3.2 (inclusive); upgrade to 4.3.3 or greater. Spring Cloud Config 5.0.x: affected from 5.0.0 through 5.0.2 (inclusive); upgrade to 5.0.3 or greater.

References

  • github.com/advisories/GHSA-6g23-24mc-hx6x
  • github.com/spring-cloud/spring-cloud-config
  • nvd.nist.gov/vuln/detail/CVE-2026-40982
  • spring.io/security/cve-2026-40982

Code Behaviors & Features

Detect and mitigate CVE-2026-40982 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions starting from 3.1.0 up to 3.1.13, all versions starting from 4.1.0 up to 4.1.9, all versions starting from 4.2.0 up to 4.2.6, all versions starting from 4.3.0 before 4.3.3, all versions starting from 5.0.0 before 5.0.3

Fixed versions

  • 4.3.3
  • 5.0.3

Solution

Upgrade to versions 4.3.3, 5.0.3 or above.

Impact 9.1 CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Learn more about CVSS

Weakness

  • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Source file

maven/org.springframework.cloud/spring-cloud-config-server/CVE-2026-40982.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Wed, 13 May 2026 00:21:52 +0000.