PT-2026-48624 · Vmware · Spring Boot
CVE-2026-41001
·
Published
2026-06-11
·
Updated
2026-08-28
CVSS v3.1
5.3
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Spring Boot versions 4.0.0 through 4.0.6
Spring Boot versions 3.5.0 through 3.5.14
Spring Boot versions 3.4.0 through 3.4.16
Spring Boot versions 3.3.0 through 3.3.19
Spring Boot versions 2.7.0 through 2.7.33
Description
The
ArtemisEmbeddedConfigurationFactory uses a fixed, static path for the embedded Artemis message broker's data directory when no explicit path is configured. This allows a local attacker on the same host to pre-create the predictable directory or place a symlink before the application starts.Recommendations
For versions 4.0.0 through 4.0.6, 3.5.0 through 3.5.14, 3.4.0 through 3.4.16, 3.3.0 through 3.3.19, and 2.7.0 through 2.7.33, configure an explicit path for the embedded Artemis message broker's data directory to avoid the use of the static path.
Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Spring Boot