CVE-2018-1258EPSS p83.9%

CVE-2018-1258CVE-2018-1258

pivotal_software / spring_security

Description

Spring Framework version 5.0.5 when used in combination with any versions of Spring Security contains an authorization bypass when using method security. An unauthorized malicious user can gain unauthorized access to methods that should be restricted.

Scoring

CVSS 8.8 ()
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS2.46% probability of exploitation · percentile 83.9% · 2026-10-05T12:00:23Z
Last modified2026-08-25
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.