Tracker / CVE-2026-40990
CVE-2026-40990
Medium 5.7
OOM error is possible while attempting to add infinite amount of functions to Function Registry. Affected Spring Products and Versions: Spring Cloud Function 3.2.x: versions prior to 3.2.16 Spring Cloud Function 4.1.x: versions prior to 4.1.10 Spring Cloud Function 4.2.x: versions prior to 4.2.6 Spring Cloud Function 4.3.x: versions prior to 4.3.3 Spring Cloud Function 5.0.x: versions prior to 5.0.2 Older, unsupported versions are also affected.
Affected products and versions
| vmware | spring_cloud_function · 3.2.0 → 3.2.16 |
|---|---|
| vmware | spring_cloud_function · 4.1.0 → 4.1.10 |
| vmware | spring_cloud_function · 4.2.0 → 4.2.6 |
| vmware | spring_cloud_function · 4.3.0 → 4.3.3 |
| vmware | spring_cloud_function · 5.0.0 → 5.0.2 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.