Medium severity4.9NVD Advisory· Published Aug 27, 2026· Updated Sep 1, 2026
CVE-2026-47894
CVE-2026-47894
Description
Spring Cloud Config Server native environment repository allows exposure of configuration files outside of the configured repository path. Spring Cloud Config 5.0.0 - 5.0.4 Spring Cloud Config 4.3.0 - 4.3.4 Spring Cloud Config 4.0.0 - 4.2.8 Spring Cloud Config 3.1.14 and earlier
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
1- spring.io/security/cve-2026-47894nvdVendor Advisory
News mentions
0No linked articles in our index yet.