CVE-2026-41863

Spring AI's support for Anthropic's Skills API used LLM-influenced filenames unsanitized in Path.resolve before writing files to disk. This could allow a malicious user to write files outside the intended target directory, including restricted directories. Affected versions: Spring AI: 1.1.0 through 1.1.x
References
Link Resource
https://spring.io/security/cve-2026-41863 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:vmware:spring_ai:*:*:*:*:*:*:*:*

History

01 Jun 2026, 14:22

Type Values Removed Values Added
First Time Vmware
Vmware spring Ai
References () https://spring.io/security/cve-2026-41863 - () https://spring.io/security/cve-2026-41863 - Vendor Advisory
CPE cpe:2.3:a:vmware:spring_ai:*:*:*:*:*:*:*:*

25 May 2026, 07:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-25 07:16

Updated : 2026-06-01 14:22


NVD link : CVE-2026-41863

Mitre link : CVE-2026-41863

CVE.ORG link : CVE-2026-41863


JSON object : View

Products Affected

vmware

  • spring_ai
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')