cvedb.io
CVE-2023-20883
HIGH · CVSS 7.5
EPSS exploitation probability: 0%
Published 2023-05-26T17:15:14.047 · Last modified 2026-06-17T05:31:06.570

Summary

In Spring Boot versions 3.0.0 - 3.0.6, 2.7.0 - 2.7.11, 2.6.0 - 2.6.14, 2.5.0 - 2.5.14 and older unsupported versions, there is potential for a denial-of-service (DoS) attack if Spring MVC is used together with a reverse proxy cache.

Affected products

vmware — spring_boot

Does this affect you?

Add your gear to cvedb and we'll alert you only when vmware ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.