VulnWatch VulnWatch
← Back to dashboard
High nvd · CVE-2026-47858

CVE-2026-47858: Starting Spring Boot applications in the Spring Tools with the live information mode enabled makes the running applicati

Published Jul 30, 2026 CVSS 8.0

Starting Spring Boot applications in the Spring Tools with the live information mode enabled makes the running application vulnerable against JMX-based remote code execution. Affected Spring Products and Versions: Spring Tools for Eclipse: 5.2.0 and earlier Spring Tools for VSCode / Cursor / Theia: 2.2.0 and earlier

Affected AI Products

cursor
Get the weekly digest. Every Monday: top AI security stories of the week. Free.