Description

A WebFlux server application that processes multipart requests creates temp files for parts larger than 10 K. Under some circumstances, temp files may remain not deleted after the request is fully processed. This allows an attacker to consume available disk space. Older, unsupported versions are also affected.

INFO

Published Date :

2026-04-29T10:46:15.633Z

Last Modified :

2026-04-29T14:00:50.573Z

Source :

vmware
AFFECTED PRODUCTS

The following products are affected by CVE-2026-22740 vulnerability.

Vendors Products
Vmware
  • Spring Framework
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-22740.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact