CVE-2025-41235 | VMware Spring Cloud Gateway Header X-Forwarded-For/Forwarded
A vulnerability has been found in VMware Spring Cloud Gateway and Spring Cloud Gateway Server MVC and classified as problematic. This vulnerability affects unknown code of the component Header Handler. The manipulation of the argument X-Forwarded-For/Forwarded leads to an unknown weakness.
This vulnerability was named CVE-2025-41235. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.