Overview
About vulnerability
In Spring AI’s tool calling support, the per-request tool list is advertised to the model as a boundary but is not fully enforced when a tool call is dispatched. Under certain conditions, a tool that was not made available to the current request could be invoked, potentially leading to privilege escalation.Details
- Affected product:
- Spring
- Affected packages:
- spring-ai-starter-model-stability-ai @ 1.1.8 (+327 more)