Unsafe Deserialization in spring-for-graphql 2.0.0-2.0.4
CVE-2026-59285 Published on August 27, 2026

Spring for GraphQL Unsafe Deserialization in pagination support
Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. Spring for GraphQL 2.0.0 - 2.0.4

NVD


Products Associated with CVE-2026-59285

Want to know whenever a new CVE is published for VMware Spring Framework? stack.watch will email you.

 

Affected Versions

Spring for GraphQL: