<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/">
  <channel>
    <title>IsItPatched — Spring Security security feed</title>
    <link>https://isitpatched.com/spring-security</link>
    <atom:link href="https://isitpatched.com/feed/product/spring-security.xml" rel="self" type="application/rss+xml" />
    <description>Security alerts for Spring Security: newly-exploited CVEs and end-of-life events from IsItPatched.</description>
    <language>en</language>
    <copyright>Compiled by IsItPatched (isitpatched.com) from NVD, CISA KEV, EPSS and endoflife.date.</copyright>
    <generator>IsItPatched (https://isitpatched.com)</generator>
    <docs>https://www.rssboard.org/rss-specification</docs>
    <ttl>15</ttl>
    <image>
      <url>https://isitpatched.com/icon-192.png</url>
      <title>IsItPatched — Spring Security security feed</title>
      <link>https://isitpatched.com/spring-security</link>
    </image>
    <lastBuildDate>Tue, 16 Jun 2026 22:43:52 GMT</lastBuildDate>
    <item>
      <title>Spring Security: CVE-2024-22234 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2024-22234</link>
      <guid isPermaLink="false">spring-security|CVE-2024-22234</guid>
      <description>Severity: High (CVSS 7.4) · Improper access control · EPSS 1%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Tue, 20 Feb 2024 07:15:09 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2023-34034 (Critical)</title>
      <link>https://isitpatched.com/cve/CVE-2023-34034</link>
      <guid isPermaLink="false">spring-security|CVE-2023-34034</guid>
      <description>Severity: Critical (CVSS 9.1) · CWE-281 · EPSS 3%</description>
      <category>Critical</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Wed, 19 Jul 2023 15:15:11 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2023-34035 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2023-34035</link>
      <guid isPermaLink="false">spring-security|CVE-2023-34035</guid>
      <description>Severity: High (CVSS 7.3) · Incorrect authorization · EPSS 1%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Tue, 18 Jul 2023 16:15:11 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2023-20862 (Medium)</title>
      <link>https://isitpatched.com/cve/CVE-2023-20862</link>
      <guid isPermaLink="false">spring-security|CVE-2023-20862</guid>
      <description>Severity: Medium (CVSS 6.3) · CWE-459 · EPSS 1%</description>
      <category>Medium</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Wed, 19 Apr 2023 20:15:10 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2022-31692 (Critical)</title>
      <link>https://isitpatched.com/cve/CVE-2022-31692</link>
      <guid isPermaLink="false">spring-security|CVE-2022-31692</guid>
      <description>Severity: Critical (CVSS 9.8) · Authorization bypass · EPSS 3%</description>
      <category>Critical</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Mon, 31 Oct 2022 20:15:12 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2022-31690 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2022-31690</link>
      <guid isPermaLink="false">spring-security|CVE-2022-31690</guid>
      <description>Severity: High (CVSS 8.1) · EPSS 1%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Mon, 31 Oct 2022 20:15:12 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2022-22978 (Critical)</title>
      <link>https://isitpatched.com/cve/CVE-2022-22978</link>
      <guid isPermaLink="false">spring-security|CVE-2022-22978</guid>
      <description>Severity: Critical (CVSS 9.8) · Incorrect authorization · EPSS 10%</description>
      <category>Critical</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Thu, 19 May 2022 15:15:08 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2022-22976 (Medium)</title>
      <link>https://isitpatched.com/cve/CVE-2022-22976</link>
      <guid isPermaLink="false">spring-security|CVE-2022-22976</guid>
      <description>Severity: Medium (CVSS 5.3) · Integer overflow · EPSS 2%</description>
      <category>Medium</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Thu, 19 May 2022 15:15:08 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2021-22119 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2021-22119</link>
      <guid isPermaLink="false">spring-security|CVE-2021-22119</guid>
      <description>Severity: High (CVSS 7.5) · Uncontrolled resource consumption · EPSS 7%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Tue, 29 Jun 2021 17:15:08 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2021-22112 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2021-22112</link>
      <guid isPermaLink="false">spring-security|CVE-2021-22112</guid>
      <description>Severity: High (CVSS 8.8) · EPSS 3%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Tue, 23 Feb 2021 19:15:13 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2020-5408 (Medium)</title>
      <link>https://isitpatched.com/cve/CVE-2020-5408</link>
      <guid isPermaLink="false">spring-security|CVE-2020-5408</guid>
      <description>Severity: Medium (CVSS 6.5) · CWE-329 · EPSS 2%</description>
      <category>Medium</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Thu, 14 May 2020 18:15:12 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2019-11272 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2019-11272</link>
      <guid isPermaLink="false">spring-security|CVE-2019-11272</guid>
      <description>Severity: High (CVSS 7.3) · Improper authentication · EPSS 1%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Wed, 26 Jun 2019 14:15:09 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2019-3795 (Medium)</title>
      <link>https://isitpatched.com/cve/CVE-2019-3795</link>
      <guid isPermaLink="false">spring-security|CVE-2019-3795</guid>
      <description>Severity: Medium (CVSS 5.3) · CWE-330 · EPSS 2%</description>
      <category>Medium</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Tue, 09 Apr 2019 16:29:01 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2018-1199 (Medium)</title>
      <link>https://isitpatched.com/cve/CVE-2018-1199</link>
      <guid isPermaLink="false">spring-security|CVE-2018-1199</guid>
      <description>Severity: Medium (CVSS 5.3) · Improper input validation · EPSS 3%</description>
      <category>Medium</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Fri, 16 Mar 2018 20:29:00 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2017-4995 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2017-4995</link>
      <guid isPermaLink="false">spring-security|CVE-2017-4995</guid>
      <description>Severity: High (CVSS 8.1) · Insecure deserialization · EPSS 3%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Mon, 27 Nov 2017 10:29:00 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2016-5007 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2016-5007</link>
      <guid isPermaLink="false">spring-security|CVE-2016-5007</guid>
      <description>Severity: High (CVSS 7.5) · CWE-264 · EPSS 2%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Thu, 25 May 2017 17:29:00 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2014-3527 (Critical)</title>
      <link>https://isitpatched.com/cve/CVE-2014-3527</link>
      <guid isPermaLink="false">spring-security|CVE-2014-3527</guid>
      <description>Severity: Critical (CVSS 9.8) · Improper authentication · EPSS 2%</description>
      <category>Critical</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Thu, 25 May 2017 17:29:00 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2014-0097 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2014-0097</link>
      <guid isPermaLink="false">spring-security|CVE-2014-0097</guid>
      <description>Severity: High (CVSS 7.3) · Improper authentication · EPSS 1%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Thu, 25 May 2017 17:29:00 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2016-9879 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2016-9879</link>
      <guid isPermaLink="false">spring-security|CVE-2016-9879</guid>
      <description>Severity: High (CVSS 7.5) · CWE-417 · EPSS 1%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Fri, 06 Jan 2017 22:59:00 GMT</pubDate>
    </item>
    <item>
      <title>Spring Security: CVE-2011-2894 (Medium)</title>
      <link>https://isitpatched.com/cve/CVE-2011-2894</link>
      <guid isPermaLink="false">spring-security|CVE-2011-2894</guid>
      <description>Severity: Medium (CVSS 6.8) · Insecure deserialization · EPSS 9%</description>
      <category>Medium</category>
      <source url="https://isitpatched.com/feed/product/spring-security.xml">IsItPatched</source>
      <pubDate>Tue, 04 Oct 2011 10:55:09 GMT</pubDate>
    </item>
  </channel>
</rss>