Handling High-Severity VA Scan Findings for Spring Framework in API Gateway 11.2
search cancel

Handling High-Severity VA Scan Findings for Spring Framework in API Gateway 11.2

book

Article ID: 452100

calendar_today

Updated On:

Products

CA API Gateway

Issue/Introduction

VA scans on API Gateway 11.2 deployments report high-severity CVE findings for the following components:

  • Spring Framework: Various CVEs (e.g., CVE-2026-41838 through CVE-2026-41855) regarding multiple vulnerabilities in versions 5.3.x, 6.1.x, and 6.2.x.

Environment

API Gateway 11.2

Resolution

For the Spring Framework CVEs, no action is required, as the Gateway is not impacted.