SpringBlade vulnerabilities
CVEs whose affected-version data names the SpringBlade package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-97368Medium· 6.3A weakness has been identified in chillzhuang SpringBlade up to 5.0.2
A weakness has been identified in chillzhuang SpringBlade up to 5.0.2. This affects the function UserServiceImpl.userInfo of the file blade-service/blade-system/src/main/java/org/springblade/system/service/impl/UserServiceImpl.java of th…
▾ Sunlitchillzhuang · SpringBladevia NVD
CVE-2026-56100High· 8.1PoCSpringBlade versions from 2.7.3 up to but not including 5.0.0 contain a privilege escalation vulnerability that allows authenticated attackers to create system administrator accounts by sending crafted POST requests to an unprotected int…
SpringBlade versions from 2.7.3 up to but not including 5.0.0 contain a privilege escalation vulnerability that allows authenticated attackers to create system administrator accounts by sending crafted POST requests to an unprotected int…
▾ MidnightSpringBlade · SpringBladeEPSS 0.29%via NVD