{"id":"ROOT-APP-MAVEN-CVE-2026-41002","summary":"CVE-2026-41002 in org.springframework.cloud:spring-cloud-config-server - Patched by Root","details":"Root has patched CVE-2026-41002 in the org.springframework.cloud:spring-cloud-config-server package for Root:Maven. Multiple fixed versions available.","modified":"2026-09-09T15:15:02.643640424Z","published":"2026-09-09T14:29:30Z","upstream":["CVE-2026-41002"],"database_specific":{"distro":"maven","distro_version":"","severity":"HIGH","source":"Root"},"affected":[{"package":{"name":"org.springframework.cloud:spring-cloud-config-server","ecosystem":"Root:Maven"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.3.0-aikido.1"}]}],"database_specific":{"all_fixed_versions":["4.3.0-aikido.1"],"root_patch_version":"aikido.1","root_patched":true,"source":"https://api.root.io/external/osv/ROOT-APP-MAVEN-CVE-2026-41002.json","total_fixed_versions":1,"upstream_version":"4.3.0"}},{"package":{"name":"io.root.org.springframework.cloud:spring-cloud-config-server","ecosystem":"Root:Maven"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.3.0-root.io.1"}]}],"database_specific":{"upstream_version":"4.3.0","all_fixed_versions":["4.3.0-root.io.1"],"root_patch_version":"root.io.1","root_patched":true,"source":"https://api.root.io/external/osv/ROOT-APP-MAVEN-CVE-2026-41002.json","total_fixed_versions":1}}],"schema_version":"1.9.0"}