PT-2026-25940 · Vmware · Spring-Ai-Mariadb-Store+2
Blackf0G
·
Published
2026-03-17
·
Updated
2026-04-10
·
CVE-2026-22730
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Spring AI versions prior to 1.0.4
Spring AI versions prior to 1.1.3
Description
A critical SQL injection flaw exists in Spring AI's
MariaDBFilterExpressionConverter component. This issue allows attackers to bypass metadata-based access controls and execute arbitrary SQL commands. The root cause is a lack of input sanitization when processing user-provided filter expressions, leading to the construction of vulnerable SQL queries. The vulnerability affects applications utilizing spring-ai-vector-store or spring-ai-mariadb-store with user-controlled filter expressions. The vulnerability allows attackers to manipulate database queries without authentication.Recommendations
For Spring AI versions prior to 1.0.4, upgrade to version 1.0.4 or later.
For Spring AI versions prior to 1.1.3, upgrade to version 1.1.3 or later.
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Spring Ai
Spring-Ai-Mariadb-Store
Spring-Ai-Vector-Store