CVE-2026-59287
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: NVD
Description
Spring for GraphQL is vulnerable to Denial of Service attacks when using the WebSocket client with keepAlive enabled.
Spring for GraphQL 2.0.0 - 2.0.4
Spring for GraphQL 1.4.0 - 1.4.6
Spring for GraphQL 1.3.0 - 1.3.9
Affected (3)
Products: Vmware: Spring For Graphql
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 1.3.0 to 1.3.10 |
References (1)
Timeline
No history available yet.