CVE-2026-59305CWE-696

CVE-2026-59305

Low · published August 28, 2026

CVSS v3.1
3.1
EPSS
0%
Percentile
4.6
In the wild
Unconfirmed
What it is

Partition interceptor may be improperly added while sending message.

Spring Cloud Stream 5.0.0 - 5.0.2

Spring Cloud Stream 4.3.0 - 4.3.3

Spring Cloud Stream 4.2.0 - 4.2.6

The record
Technical detail
CVSS v3.1
3.1 · LOW
Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:N
CVSS v4.0
Not supplied
EPSS
0.00151 · 4.6th percentile
Weakness
CWE-696 · Incorrect Behavior Order
Published
2026-08-28T00:17Z
Affected products (3)
ProductVersionsFixed in
vmware/spring_cloud_stream≥ 4.2.0, < 4.2.74.2.7
vmware/spring_cloud_stream≥ 4.3.0, < 4.3.44.3.4
vmware/spring_cloud_stream≥ 5.0.0, < 5.0.35.0.3
References (1)
EPSS history
Timeline
  • 27 AUG 17:58Z
    Partition interceptor may be improperly added while sending message
    cvelistv5