CVE-2026-59303
Dynamic destination cache size is not properly bound in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.3.0 - 4.3.3 Spring Cloud Stream 4.2.0 - 4.2.6
- Published Aug 27, 2026
- CVSS 3.8 low
- 0.2% chance of exploitation in the next 30 days (EPSS)
- A fix is available