PT-2026-25940 · Vmware · Spring-Ai-Mariadb-Store+2

Blackf0G

·

Published

2026-03-17

·

Updated

2026-04-10

·

CVE-2026-22730

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Spring AI versions prior to 1.0.4 Spring AI versions prior to 1.1.3
Description A critical SQL injection flaw exists in Spring AI's MariaDBFilterExpressionConverter component. This issue allows attackers to bypass metadata-based access controls and execute arbitrary SQL commands. The root cause is a lack of input sanitization when processing user-provided filter expressions, leading to the construction of vulnerable SQL queries. The vulnerability affects applications utilizing spring-ai-vector-store or spring-ai-mariadb-store with user-controlled filter expressions. The vulnerability allows attackers to manipulate database queries without authentication.
Recommendations For Spring AI versions prior to 1.0.4, upgrade to version 1.0.4 or later. For Spring AI versions prior to 1.1.3, upgrade to version 1.1.3 or later.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

BDU:2026-04970
CVE-2026-22730
GHSA-C267-RFVC-MVPM

Affected Products

Spring Ai
Spring-Ai-Mariadb-Store
Spring-Ai-Vector-Store