Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-47858

Starting Spring Boot applications in the Spring Tools with the live information mode enabled makes the running application vulnerable against JMX-based remote code execution. Affected Spring Products and Versions: Spring Tools for Eclipse: 5.2.0 and earlier Spring Tools for VSCode / Cursor / Theia: 2.2.0 and earlier
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 11.1%
CVSS Severity
CVSS v3 Score 8.0
Products affected by CVE-2026-47858


Contact Us

Shodan ® - All rights reserved