Package impact
MAVEN / org.springframework.grpc:spring-grpc
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-40968 | high | 8.8 | 8.8 | 1mo ago | Spring gRPC SecurityContext leaks across requests upon authorization failure | |
| CVE-2026-40969 | medium | 5.3 | 5.3 | 1mo ago | Spring gRPC AuthenticationException messages are reflected to remote client |