Executive brief
Spring Security authorization bypass for method security annotations on private methods
Affected products
- Maven org.springframework.security:spring-security-core
- Maven org.springframework.security:spring-security-aspects
Junglewise Threat Intelligence
CVE-2025-41232 · Severity: low · CVSS 3.1 · Published 2025-05-21
Technologies: org.springframework.security:spring-security-core (Maven). Vendors: Maven.
Spring Security authorization bypass for method security annotations on private methods