Get ahead
VMware offers training and certification to turbo-charge your progress.
Learn moreA malicious user could craft input that is stored in conversation memory and later interpreted by the model in an unintended way. Applications using the affected advisor with user-controlled input may be susceptible to manipulation of model behavior across conversation turns.
Spring AI:
Users of affected versions should upgrade to the corresponding fixed version.
| Affected version(s) | Fix version | Availability |
|---|---|---|
| 1.0.x | 1.0.7 | OSS |
| 1.1.x | 1.1.6 | OSS |
The issue was reported responsibly by
To report a security vulnerability for a project within the Spring portfolio, see the Security Policy