Description
Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError in the ingestion thread.
Spring AI 2.0.0
Spring AI 1.1.0 - 1.1.8
Spring AI 1.0.0 - 1.0.9
Published: 2026-08-26
Score: 7.5 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability arises when the Spring AI PDF Document Reader processes a PDF containing a deeply nested or cyclic table of contents, leading to unbounded recursion and a StackOverflowError in the ingestion thread. The resulting crash can expose the application to a denial‑of‑service condition for any user relying on PDF ingestion. It does not provide an attacker with execution privileges or code execution; the failure is limited to service availability.

Affected Systems

The affected product is Spring AI, versions 1.0.0 through 1.0.9, 1.1.0 through 1.1.8, and 2.0.0. All affected builds are distributed under the Spring label.

Risk and Exploitability

The CVSS score of 7.5 classifies this issue as moderate to high severity. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog, which suggests no widespread exploitation has been documented to date. The attack vector is inferred to be remote, requiring an attacker to supply a crafted PDF file to the ingestion component; successful exploitation would result in a stack overflow and potential service disruption.

Generated by OpenCVE AI on August 27, 2026 at 01:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to the latest Spring AI version that addresses the PDF outline recursion bug.
  • If an update is unavailable, disable or restrict the PDF ingestion feature until a fix is applied.
  • Validate the depth of the PDF outline tree before processing to prevent excessively deep nesting.

Generated by OpenCVE AI on August 27, 2026 at 01:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
History

Thu, 27 Aug 2026 01:45:00 +0000

Type Values Removed Values Added
First Time appeared Spring
Spring spring Ai
Weaknesses CWE-739
Vendors & Products Spring
Spring spring Ai

Thu, 27 Aug 2026 00:30:00 +0000

Type Values Removed Values Added
Description Analyzing a PDF with a deeply nested or cyclic table of contents can cause a StackOverflowError in the ingestion thread. Spring AI 2.0.0 Spring AI 1.1.0 - 1.1.8 Spring AI 1.0.0 - 1.0.9
Title Unbounded recursion over attacker-controlled PDF outline tree in Spring AI PDF Document Reader
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

Spring Spring Ai
cve-icon MITRE

Status: PUBLISHED

Assigner: vmware

Published:

Updated: 2026-08-26T23:28:41.732Z

Reserved: 2026-05-20T10:00:53.147Z

Link: CVE-2026-47851

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-27T01:17:32.150

Modified: 2026-08-27T01:17:32.150

Link: CVE-2026-47851

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-27T01:30:13Z

Weaknesses