Bug 2404437 (CVE-2025-41254) - CVE-2025-41254 org.springframework/spring-core: Spring Framework STOMP CSRF Vulnerability
Summary: CVE-2025-41254 org.springframework/spring-core: Spring Framework STOMP CSRF V...
Keywords:
Status: NEW
Alias: CVE-2025-41254
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2405391 2405392 2405393 2405390
Blocks:
TreeView+ depends on / blocked
 
Reported: 2025-10-16 15:01 UTC by OSIDB Bzimport
Modified: 2025-10-21 17:21 UTC (History)
55 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2025-10-16 15:01:34 UTC
STOMP over WebSocket applications may be vulnerable to a security bypass that allows an attacker to send unauthorized messages.

Affected Spring Products and VersionsSpring Framework:

  *  6.2.0 - 6.2.11
  *  6.1.0 - 6.1.23
  *  6.0.x - 6.0.29
  *  5.3.0 - 5.3.45
  *  Older, unsupported versions are also affected.


MitigationUsers of affected versions should upgrade to the corresponding fixed version.

Affected version(s)Fix versionAvailability6.2.x6.2.12OSS6.1.x6.1.24 Commercial https://enterprise.spring.io/ 6.0.xN/A Out of support https://spring.io/projects/spring-framework#support 5.3.x5.3.46 Commercial https://enterprise.spring.io/ No further mitigation steps are necessary.

CreditThis vulnerability was discovered and responsibly reported by Jannis Kaiser.


Note You need to log in before you can comment on or make changes to this bug.