Description
Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError in the ingestion thread.
Spring AI 2.0.0
Spring AI 1.1.0 - 1.1.8
Spring AI 1.0.0 - 1.0.9
Published: 2026-08-26
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Patch
AI Analysis

Impact

This vulnerability arises when the Spring AI PDF Document Reader processes a PDF containing a deeply nested or cyclic table of contents, leading to unbounded recursion and a StackOverflowError in the ingestion thread. The resulting crash can expose the application to a denial‑of‑service condition for any user relying on PDF ingestion. It does not provide an attacker with execution privileges or code execution; the failure is limited to service availability.

Affected Systems

The affected product is Spring AI, versions 1.0.0 through 1.0.9, 1.1.0 through 1.1.8, and 2.0.0. All affected builds are distributed under the Spring label.

Risk and Exploitability

The CVSS score of 7.5 classifies this issue as moderate to high severity. The EPSS score is 0.263%, indicating a very low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog, which suggests no widespread exploitation has been documented to date. The likely attack vector is remote, requiring an attacker to supply a crafted PDF file to the ingestion component; successful exploitation would result in a stack overflow and potential service disruption.

Generated by OpenCVE AI on August 27, 2026 at 19:04 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to the latest Spring AI version that addresses the PDF outline recursion bug.
  • If an update is unavailable, disable or restrict the PDF ingestion feature until a fix is applied.
  • Validate the depth of the PDF outline tree before processing to prevent excessively deep nesting.

Generated by OpenCVE AI on August 27, 2026 at 19:04 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
History

Fri, 04 Sep 2026 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Vmware
Vmware spring Ai
CPEs cpe:2.3:a:vmware:spring_ai:*:*:*:*:*:*:*:*
Vendors & Products Vmware
Vmware spring Ai

Thu, 27 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-674
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 27 Aug 2026 01:45:00 +0000

Type Values Removed Values Added
First Time appeared Spring
Spring spring Ai
Weaknesses CWE-739
Vendors & Products Spring
Spring spring Ai

Thu, 27 Aug 2026 00:30:00 +0000

Type Values Removed Values Added
Description Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError in the ingestion thread. Spring AI 2.0.0 Spring AI 1.1.0 - 1.1.8 Spring AI 1.0.0 - 1.0.9
Title Unbounded recursion over attacker-controlled PDF outline tree in Spring AI PDF Document Reader
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

Spring Spring Ai
Vmware Spring Ai
cve-icon MITRE

Status: PUBLISHED

Assigner: vmware

Published:

Updated: 2026-08-27T15:14:42.087Z

Reserved: 2026-05-20T10:00:53.147Z

Link: CVE-2026-47851

cve-icon Vulnrichment

Updated: 2026-08-27T15:14:33.678Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-27T01:17:32.150

Modified: 2026-09-04T20:08:06.560

Link: CVE-2026-47851

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-27T19:15:03Z

Weaknesses