Codecentric

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 3
    Known Exploited: 0
    0
    Critical Level Threats
    3
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-62242

    Spring Boot Admin Server < 4.1.2 SSRF via Unauthenticated Instance Registration

    Last Modified: Jul 14, 2026
    Published: Jul 13, 2026

    CVE-2023-38286

    Thymeleaf through 3.1.1.RELEASE, as used in spring-boot-admin (aka Spring Boot Admin) through 3.1.1 and other products, allows sandbox bypass via crafted HTML. This may be relevant for SSTI (Server Side Template Injection) and code execution in spring-boot-admin if MailNotifier is enabled and there is write access to environment variables via the UI.

    Last Modified: Nov 21, 2024
    Published: Jul 14, 2023

    CVE-2022-46166

    Spring Boot Admins integrated notifier support allows arbitrary code execution

    Last Modified: Apr 23, 2025
    Published: Dec 09, 2022
    Items Per Page
    Codecentric Vulnerabilities & Security CVEs | CVE-DB