CVE-2025-41243CRITICAL 10.0EPSS p87.0%

CVE-2025-41243CVE-2025-41243

Description

Spring Cloud Gateway Server Webflux may be vulnerable to Spring Environment property modification. An application should be considered vulnerable when all the following are true: * The application is using Spring Cloud Gateway Server Webflux (Spring Cloud Gateway Server WebMVC is not vulnerable). * Spring Boot actuator is a dependency. * The Spring Cloud Gateway Server Webflux actuator web endpoint is enabled via management.endpoints.web.exposure.include=gateway. * The actuator endpoints are available to attackers. * The actuator endpoints are unsecured.

Scoring

CVSS 3.110.0 (CRITICAL)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS3.31% probability of exploitation · percentile 87.0% · 2026-06-19T12:03:05Z
Published2025-09-16
Last modified2026-04-15

Underlying weaknesses· 2

CWE-94CWE-917

References

  1. https://spring.io/security/cve-2025-41243

2

TypeTargetConfidenceTier
WeaknessImproper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')cwe-9170%live
WeaknessImproper Control of Generation of Code ('Code Injection')cwe-940%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
VMware Spring Cloud Gateway Code Injection Vulnerability
CVE
CVE-2025-41235
CVE
CVE-2026-40976
CVE
CVE-2026-41840
CVE
CVE-2026-22733
CVE
CVE-2026-22750
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.