[Medium] CVE-2026-41719 – A SpEL Injection vulnerability exists in the Spring Data KeyValue if unsanitized...
Medium CVE-2026-41719 A SpEL Injection vulnerability exists in the Spring Data KeyValue if unsanitized user input is passed as Sort into a repository query method that delegates evaluation to the SpelPropertyComparator. Affected versions: Spring Data KeyValue / Spring Data Redis 4.0.0 through...