CVE-2026-47858 - live information startup mode is vulnerable for remote code execution
CVE ID :CVE-2026-47858
Published : July 30, 2026, 6:25 a.m. | 26 minutes ago
Description :Starting Spring Boot applications in the Spring Tools with the live information mode enabled makes the running application vulnerable against JMX-based remote code execution. Affected Spring Products and Versions: Spring Tools for Eclipse: 5.2.0 and earlier Spring Tools for VSCode / Cursor / Theia: 2.2.0 and earlier
Severity: 8.0 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : July 30, 2026, 6:25 a.m. | 26 minutes ago
Description :Starting Spring Boot applications in the Spring Tools with the live information mode enabled makes the running application vulnerable against JMX-based remote code execution. Affected Spring Products and Versions: Spring Tools for Eclipse: 5.2.0 and earlier Spring Tools for VSCode / Cursor / Theia: 2.2.0 and earlier
Severity: 8.0 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...