CVE-2026-47834
Last modified
CVE-2026-47834 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. Spring Data JPA's Sort validation can be bypassed when parameters containing crafted payload are accepted from untrusted sources. Spring Data JPA 4.1.0 Spring Data JPA 4.0.0 - 4.0.6 Spring Data JPA 3.5.0 - 3.5.13 Spring Data JPA 3.0.0 - 3.4.15. EPSS estimates a 0.20% chance of exploitation in the next 30 days.
Description
Spring Data JPA's Sort validation can be bypassed when parameters containing crafted payload are accepted from untrusted sources. Spring Data JPA 4.1.0 Spring Data JPA 4.0.0 - 4.0.6 Spring Data JPA 3.5.0 - 3.5.13 Spring Data JPA 3.0.0 - 3.4.15
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Vmware | Spring Data Jpa | >= 3.0.0, < 3.4.16 |
| Vmware | Spring Data Jpa | >= 3.5.0, < 3.5.14 |
| Vmware | Spring Data Jpa | >= 4.0.0, < 4.0.6.1 |
| Vmware | Spring Data Jpa | >= 4.1.0, < 4.1.0.1 |
References
- https://spring.io/security/cve-2026-47834Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-47834?
How severe is CVE-2026-47834?
How do I fix CVE-2026-47834?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-47828During bosh create-env and bosh delete-env, the CLI uploads …8.8
- CVE-2026-47829Argument Injection in bosh-cli allows a compromised BOSH Dir…7.8
- CVE-2026-4783A vulnerability has been found in itsourcecode College Manag…6.3
- CVE-2026-47830Incorrect Permission Assignment in BOSH.Utils.psm1 in BOSH-E…8.8
- CVE-2026-47831Use of a cryptographically weak random number generator in t…7.7
- CVE-2026-47833setupBpmLogs follows symlink for bpm.log open and chown — co…6.9
- CVE-2026-47835In Spring AI Vector Stores, special characters could be used…7.5
- CVE-2026-47836The base directory (spring.cloud.config.server.svn.basedir) …8.1
- CVE-2026-47837Missing Authentication for Critical Function vulnerability i…9.8
- CVE-2026-47838SubjectDnX509PrincipalExtractor does not correctly handle ce…8.1
- CVE-2026-47839A vulnerability allows users authenticating through a federa…9.2
- CVE-2026-4784A vulnerability was found in code-projects Simple Laundry Sy…9.8
Are you affected by CVE-2026-47834?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
