CVE-2026-41712

Spring AI's chat memory component contained a problematic default that, when not explicitly overridden, could result in unintended data exposure between users.

high 7.5 CVSS 3.1
Published: May 12, 2026
Modified: May 12, 2026
Vendor: Vmware
Product: Spring Ai

Description

Spring AI's chat memory component contained a problematic default that, when not explicitly overridden, could result in unintended data exposure between users.

References

Related CVEs