VDB
CVE-2025-41232
CVE-2025-41232
PUBLISHED
Spring Security ist ein Framework, das Authentifizierung, Autorisierung und Schutz vor gängigen Angriffen bietet.
EPSS 0.62% · 47.5th percentile
Risk Scores
EPSS Score
0.62%
47.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| VMware Tanzu | VMware Tanzu Spring Security <6.4.6 | |
| Dell | Dell Secure Connect Gateway <5.36.00.16 | |
| IBM | IBM Sterling Connect:Direct <6.4.0.3 | |
| IBM | IBM Sterling Connect:Direct <6.3.0.14 |
Timeline
- May 19, 2025 CVE Published
- May 21, 2025 EPSS Score
- May 23, 2025 Coalition ESS Score
- Jun 2, 2025 EPSS Score
- Jun 13, 2025 EPSS Score
- Jun 25, 2025 EPSS Score
- Jul 7, 2025 EPSS Score
- Jul 19, 2025 EPSS Score
- Jul 25, 2025 Coalition ESS Score
- Jul 30, 2025 EPSS Score
- Aug 11, 2025 EPSS Score
- Aug 22, 2025 Coalition ESS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-1099.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1099 advisory
- https://spring.io/security/cve-2025-41232 advisory
- https://spring.io/blog/2025/05/19/spring-security-6-4-6 advisory
- https://www.ibm.com/support/pages/node/7238295 advisory
- https://www.dell.com/support/kbdoc/000503504/dsa-2026-386-security-update-f advisory