Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
PRODUCT FAMILYFRAMEWORKRENDERER_REQUIRED

Spring

Spring Boot

Spring Boot is tracked by BlackTree as a software framework or development platform. Its lifecycle page separates release identity, maintenance and security boundaries using the publisher's registered source.

Lifecycle status

No support or retirement date is shown unless BlackTree can link it to a registered publisher source. A missing date means that a boundary is not publicly stated, has not yet been extracted, or still needs source routing. It does not mean the product is supported indefinitely.

Product overview

Spring Boot is tracked by BlackTree as a software framework or development platform. Its lifecycle page separates release identity, maintenance and security boundaries using the publisher's registered source.

Main capabilities

  • Application development components
  • Versioned runtime or build interfaces
  • Security and compatibility maintenance

Typical use

Used by software teams to build, run or maintain applications.

Deployment

Included in source projects, application dependencies, build systems or managed runtimes.

Lifecycle records

No verified lifecycle boundary is currently published for this product family.

Official sources

RENDERER_REQUIRED

Spring Boot official lifecycle source

Checked automatically.

The static page and embedded data were checked safely, but this source still requires a renderer adapter.

Open publisher source

Package vulnerability advisories

Spring Boot's default security filter chain has no authorization rule with Actuator but without Health

Fixed: 4.0.6

Spring Boot accepts predictable temp directory without ownership verification

Fixed: 4.0.6, 3.5.14

Spring Boot EndpointRequest.to() creates wrong matcher if actuator endpoint is not exposed

Fixed: 3.3.11, 3.4.5

Temporary Directory Hijacking to Local Privilege Escalation Vulnerability in org.springframework.boot:spring-boot

Fixed: 2.2.11.RELEASE

Moderate severity vulnerability that affects org.springframework.boot:spring-boot

Fixed: 1.5.10