Low severity3.1NVD Advisory· Published Aug 27, 2026
CVE-2026-59297
CVE-2026-59297
Description
Implementation of isSecure() call of ServerlessHttpServletRequest does not verify the actual scheme. Spring Cloud Function 5.0.0 - 5.0.3 Spring Cloud Function 4.3.0 - 4.3.4 Spring Cloud Function 4.2.0 - 4.2.7
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2>=4.2.0,<4.2.8+ 1 more
- (no CPE)range: >=4.2.0,<4.2.8
- (no CPE)range: 5.0.0 - 5.0.3, 4.3.0 - 4.3.4, 4.2.0 - 4.2.7
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.