Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-47894

Spring Cloud Config Server native environment repository allows exposure of configuration files outside of the configured repository path. Spring Cloud Config 5.0.0 - 5.0.4 Spring Cloud Config 4.3.0 - 4.3.4 Spring Cloud Config 4.0.0 - 4.2.8 Spring Cloud Config 3.1.14 and earlier
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 24.0%
CVSS Severity
CVSS v3 Score 4.9
Products affected by CVE-2026-47894


Contact Us

Shodan ® - All rights reserved