Disclosure summary
Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious user (or attacker) can craft a message to the broker that can lead to a remote code execution attack.
Source-reported weakness categories
CWE-94, CWE-358
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
NIST National Vulnerability Database · NVD-CVE-2018-1270
Open original source · Updated Oct 08, 2026
Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.
| Vendor | Product / association | Version / bounds |
|---|---|---|
| vmware | spring_framework | * {"versionStartIncluding":"5.0.0","versionEndExcluding":"5.0.5"} |
| oracle | application_testing_suite | 12.5.0.3 |
| oracle | application_testing_suite | 13.1.0.1 |
| oracle | application_testing_suite | 13.2.0.1 |
| oracle | application_testing_suite | 13.3.0.1 |
| oracle | big_data_discovery | 1.6.0 |
| oracle | communications_converged_application_server | * {"versionEndExcluding":"7.0.0.1"} |
| oracle | communications_diameter_signaling_router | * {"versionEndExcluding":"8.3"} |
| oracle | communications_performance_intelligence_center | * {"versionEndExcluding":"10.2.1"} |
| oracle | communications_services_gatekeeper | * {"versionEndExcluding":"6.1.0.4.0"} |
| oracle | enterprise_manager_ops_center | 12.2.2 |
| oracle | enterprise_manager_ops_center | 12.3.3 |
| oracle | goldengate_for_big_data | 12.2.0.1 |
| oracle | goldengate_for_big_data | 12.3.1.1 |
| oracle | goldengate_for_big_data | 12.3.2.1 |
| oracle | health_sciences_information_manager | 3.0 |
| oracle | healthcare_master_person_index | 3.0 |
| oracle | healthcare_master_person_index | 4.0 |
| oracle | insurance_calculation_engine | 10.1.1 |
| oracle | insurance_calculation_engine | 10.2 |
| oracle | insurance_calculation_engine | 10.2.1 |
| oracle | insurance_rules_palette | 10.0 |
| oracle | insurance_rules_palette | 10.1 |
| oracle | insurance_rules_palette | 10.2 |
| oracle | insurance_rules_palette | 11.0 |
| oracle | insurance_rules_palette | 11.1 |
| oracle | primavera_gateway | 15.2 |
| oracle | primavera_gateway | 16.2 |
| oracle | primavera_gateway | 17.12 |
| oracle | retail_back_office | 14.0 |
| oracle | retail_back_office | 14.1 |
| oracle | retail_central_office | 14.0 |
| oracle | retail_central_office | 14.1 |
| oracle | retail_customer_insights | 15.0 |
| oracle | retail_customer_insights | 16.0 |
| oracle | retail_integration_bus | 14.0.1 |
| oracle | retail_integration_bus | 14.0.2 |
| oracle | retail_integration_bus | 14.0.3 |
| oracle | retail_integration_bus | 14.0.4 |
| oracle | retail_integration_bus | 14.1.1 |
| oracle | retail_integration_bus | 14.1.2 |
| oracle | retail_integration_bus | 14.1.3 |
| oracle | retail_integration_bus | 15.0.0.1 |
| oracle | retail_integration_bus | 15.0.1 |
| oracle | retail_integration_bus | 15.0.2 |
| oracle | retail_integration_bus | 16.0 |
| oracle | retail_integration_bus | 16.0.1 |
| oracle | retail_integration_bus | 16.0.2 |
| oracle | retail_open_commerce_platform | 5.3.0 |
| oracle | retail_open_commerce_platform | 6.0.0 |
| oracle | retail_open_commerce_platform | 6.0.1 |
| oracle | retail_order_broker | 5.1 |
| oracle | retail_order_broker | 5.2 |
| oracle | retail_order_broker | 15.0 |
| oracle | retail_order_broker | 16.0 |
| oracle | retail_point-of-sale | 14.0 |
| oracle | retail_point-of-sale | 14.1 |
| oracle | retail_predictive_application_server | 14.0 |
| oracle | retail_predictive_application_server | 14.1 |
| oracle | retail_predictive_application_server | 15.0 |
| oracle | retail_predictive_application_server | 16.0 |
| oracle | retail_returns_management | 14.0 |
| oracle | retail_returns_management | 14.1 |
| oracle | retail_xstore_point_of_service | 7.1 |
| oracle | service_architecture_leveraging_tuxedo | 12.1.3.0.0 |
| oracle | service_architecture_leveraging_tuxedo | 12.2.2.0.0 |
| oracle | tape_library_acsls | 8.4 |
| redhat | fuse | 1.0.0 |
| debian | debian_linux | 9.0 |
Original records & references
- NIST NVD record
- CVE Program record
- access.redhat.com — Third Party Advisory
- lists.apache.org
- lists.apache.org
- lists.apache.org
- lists.apache.org
- lists.apache.org
- lists.debian.org — Mailing List, Third Party Advisory
- pivotal.io — Vendor Advisory
- www.exploit-db.com — Broken Link, Third Party Advisory, VDB Entry
- www.oracle.com — Patch, Third Party Advisory
- www.oracle.com — Patch, Third Party Advisory
- www.oracle.com — Patch, Third Party Advisory
- www.oracle.com — Patch, Third Party Advisory
- access.redhat.com — Third Party Advisory
- lists.apache.org
- lists.apache.org
- lists.apache.org
- lists.apache.org
- lists.apache.org
- lists.debian.org — Mailing List, Third Party Advisory
- pivotal.io — Vendor Advisory
- www.exploit-db.com — Broken Link, Third Party Advisory, VDB Entry
- www.oracle.com — Patch, Third Party Advisory
- www.oracle.com — Patch, Third Party Advisory
- www.oracle.com — Patch, Third Party Advisory
- www.oracle.com — Patch, Third Party Advisory
PUBLISHED 2018-04-06T09:29:00-04:00
MODIFIED 2026-10-08T18:16:46-04:00
INGESTED 2026-10-10T20:50:18-04:00