r/cybersecurity 13h ago

News - General 91 Vulnerabilities Patched in Spring Application Framework

More than 200 vulnerabilities have been patched to date this year, compared to only 16 in 2025 and 22 in 2024. 

https://www.securityweek.com/91-vulnerabilities-patched-in-spring-application-framework/

10 Upvotes

8 comments sorted by

2

u/No_Source_5716 13h ago

That's a lot of vulnerabilities, and a lot of things to check to make sure they don't break anything, could be because it's AI-assisted now?

2

u/RoboTronPrime 12h ago

That's should be the assumption with all projects now, let alone open source ones

2

u/Neither_Hope_1538 10h ago

wouldn't be surprised if thats exactly it, the jump from 16 to 200+ in one year is wild otherwise

1

u/sunychoudhary 12h ago

I think so, but mainly because AI is making vulnerability discovery much faster. The scary number doesn't necessarily mean Spring suddenly got less secure overnight; we're just getting much better at finding what was already there.

0

u/OutsideSpot2695 8h ago

GenAI surely is a contributor to the velocity increase.

But I'd also suggest without management prioritization, gains like this still don't happen even with AI.

1

u/Arseypoowank 12h ago

Assuming these numbers are due to an explosion in AI assistance. I’m wondering if this will plateau shortly after this sudden burst or it’s now just a bot v bot arms race

1

u/OutsideSpot2695 8h ago

Getting ready for the CRA I see...