CVE-2026-59275

Updated on 27 Aug 2026

Severity

4.0 Medium severity

Details

CVSS score
4.0
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

Overview

About vulnerability

A single hostile AMQP message can terminate the entire consumer JVM (System.exit(99)), not just the listener thread — full availability loss for every workload co-located in that process.

Details

Affected product:
Spring
Affected packages:
Spring Integration @ 5.5.19 (+1741 more)

Fixes