CVE-2026-47861
Last modified
CVE-2026-47861 is a medium-severity vulnerability rated 6.3/10 on the CVSS scale. An unauthenticated remote attacker who can send a single UDP packet to a Spring Integration UDP inbound adapter can cause the server to emit an outbound UDP datagram to an arbitrary internal or external host and port of the attacker's choosing. Spring Integration 7.1.0 Spring Integration 7.0.0 - 7.0.5 Spring Integration 6.5.0 - 6.5.10 Spring Integration 6.4.0 - 6.4.12 Spring Integration 5.5.21 and earlier. EPSS estimates a 0.25% chance of exploitation in the next 30 days.
Description
An unauthenticated remote attacker who can send a single UDP packet to a Spring Integration UDP inbound adapter can cause the server to emit an outbound UDP datagram to an arbitrary internal or external host and port of the attacker's choosing. Spring Integration 7.1.0 Spring Integration 7.0.0 - 7.0.5 Spring Integration 6.5.0 - 6.5.10 Spring Integration 6.4.0 - 6.4.12 Spring Integration 5.5.21 and earlier
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Vmware | Spring Integration | < 5.5.22 |
| Vmware | Spring Integration | >= 6.4.0, < 6.4.13 |
| Vmware | Spring Integration | >= 6.5.0, < 6.5.11 |
| Vmware | Spring Integration | >= 7.0.0, < 7.0.5.1 |
| Vmware | Spring Integration | >= 7.1.0, < 7.1.0.1 |
References
- https://spring.io/security/cve-2026-47861Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-47861?
How severe is CVE-2026-47861?
How do I fix CVE-2026-47861?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-47856Spring Integration's JSON to object conversion uses the json…6.3
- CVE-2026-47857In Reactor Core, applications that use the Flux.windowTimeou…5.9
- CVE-2026-47858Starting Spring Boot applications in the Spring Tools with t…8
- CVE-2026-47859RFC6587SyslogDeserializer, used by the Spring Integration sy…6.5
- CVE-2026-4786Mitgation of CVE-2026-4519 was incomplete. If the URL contai…7.1
- CVE-2026-47860An attacker who can publish to a queue consumed by an applic…6.5
- CVE-2026-47862An attacker who can set the file_name header on a message re…5.4
- CVE-2026-47863In Reactor Core, applications that use the Flux.bufferTimeou…7.5
- CVE-2026-47864SerializingHttpMessageConverter deserializes the body of inc…9.8
- CVE-2026-47865VMware Avi Load Balancer contains an authentication bypass v…9.8
- CVE-2026-47866VMware Avi Load Balancer contains an authorization bypass vu…8.3
- CVE-2026-47867VMware Avi Load Balancer contains a remote code execution vu…8.8
Are you affected by CVE-2026-47861?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
