Is Spring Framework 5.0.20 patched?
VMware · cycle 5.0 · end of life · Official site ↗
20/100Critical · exploited
Minimum safe version6.0.18
5.0.20 has 3 open critical-or-high vulnerabilities. Run 6.0.18 or later to clear them. See what 6.0.18 fixes →
Known issues affecting 5.0.20
Exploited first, then by exploitation probability.
CVE-2022-22965 CRITICAL ● exploited EPSS 94% → fixed in 5.3.18 CVE-2016-1000027 CRITICAL EPSS 60% → fixed in 6.0.0 CVE-2024-22259 HIGH EPSS 56% → fixed in 6.1.5 CVE-2022-22968 MEDIUM EPSS 21% → fixed in 5.2.0 CVE-2022-22950 MEDIUM EPSS 2% → fixed in 5.3.17 CVE-2023-20861 MEDIUM EPSS 1% → see advisory CVE-2022-22970 MEDIUM EPSS 0% → see advisory CVE-2026-22737 MEDIUM EPSS 0% → fixed in 7.0.6 CVE-2026-22735 LOW EPSS 0% → fixed in 7.0.6 CVE-2026-22741 LOW EPSS 0% → fixed in 7.0.7 CVE-2026-22745 MEDIUM EPSS 0% → fixed in 7.0.7 CVE-2026-22740 MEDIUM EPSS 0% → fixed in 7.0.7