High severity8.1NVD Advisory· Published Aug 27, 2026· Updated Sep 2, 2026
CVE-2026-59285
CVE-2026-59285
Description
Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. Spring for GraphQL 2.0.0 - 2.0.4
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 2.0.0 - 2.0.4
Patches
Vulnerability mechanics
References
1- spring.io/security/cve-2026-59285nvdVendor Advisory
News mentions
3- Spring Projects: 25 Vulnerabilities Disclosed, Including Critical Flaws in Framework and GraphQLVypr Intelligence · Aug 27, 2026
- 91 Spring Vulnerabilities Impact 209,000+ Software Components Across Open-Source EcosystemCyber Security News · Aug 25, 2026
- 91 Vulnerabilities Patched in Spring Application FrameworkSecurityWeek · Aug 24, 2026