A command-injection vulnerability in the Spring CLI VSCode extension allows attackers to execute arbitrary commands on affected user machines. The vulnerability, tracked as CVE-2026-22718, affects all versions of the extension through 0.9.0 and poses a significant risk to developers still using the outdated tool despite its end-of-life status. Vulnerability Details The Spring CLI VSCode extension contains a command-injection flaw that attackers can exploit to execute […]
The post Spring CLI Vulnerability Allows Attackers to Execute Commands on User Systems appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Divya
Source: gbHackers
Source Link: https://gbhackers.com/spring-cli-vulnerability/