CVE-2026-41848 | Vmware Spring Framework up to 5.3.48/6.1.27/6.2.18/7.0.7 Regular Expression redos
A vulnerability classified as problematic has been found in Vmware Spring Framework up to 5.3.48/6.1.27/6.2.18/7.0.7. Affected by this issue is some unknown functionality of the component Regular Expression Handler. This manipulation causes inefficient regular expression complexity.
This vulnerability appears as CVE-2026-41848. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.