CVE-2026-47894
Last modified
CVE-2026-47894 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Spring Cloud Config Server native environment repository allows exposure of configuration files outside of the configured repository path. Spring Cloud Config 5.0.0 - 5.0.4 Spring Cloud Config 4.3.0 - 4.3.4 Spring Cloud Config 4.0.0 - 4.2.8 Spring Cloud Config 3.1.14 and earlier. EPSS estimates a 0.32% chance of exploitation in the next 30 days.
Description
Spring Cloud Config Server native environment repository allows exposure of configuration files outside of the configured repository path. Spring Cloud Config 5.0.0 - 5.0.4 Spring Cloud Config 4.3.0 - 4.3.4 Spring Cloud Config 4.0.0 - 4.2.8 Spring Cloud Config 3.1.14 and earlier
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Vmware | Spring Cloud Config | < 3.1.15 |
| Vmware | Spring Cloud Config | >= 4.0.0, < 4.2.9 |
| Vmware | Spring Cloud Config | >= 4.3.0, < 4.3.5 |
| Vmware | Spring Cloud Config | >= 5.0.0, < 5.0.5 |
References
- https://spring.io/security/cve-2026-47894Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-47894?
How severe is CVE-2026-47894?
How do I fix CVE-2026-47894?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-47889A WebFlux application running on the Jetty 12 Core reactive …7.5
- CVE-2026-4789Kyverno, versions 1.16.0 and later, are vulnerable to SSRF d…9.8
- CVE-2026-47890Spring MVC and WebFlux applications are vulnerable to stream…9.8
- CVE-2026-47891A Spring WebFlux application that relies on the Aalto XML pr…9.8
- CVE-2026-47892A WebFlux application using functional endpoints and deploye…9.8
- CVE-2026-47893A Spring WebFlux application that supports WebSocket connect…7.5
- CVE-2026-47895In strongSwan before 6.0.7, identity parsing/cloning is mish…7.5
- CVE-2026-47896Improper Limitation of a Pathname to a Restricted Directory …7.5
- CVE-2026-47897Improper Limitation of a Pathname to a Restricted Directory …7.5
- CVE-2026-47898Improper Restriction of XML External Entity Reference vulner…9.8
- CVE-2026-47899The Electron preload script in Logseq exposes an API method …8.7
- CVE-2026-4790The Premium Addons for Elementor – Powerful Elementor Templa…5.4
Are you affected by CVE-2026-47894?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
