https://reddit.com/r/netsec/comments/1rxv3nu/cve202622730_sql_injection_in_spring_ais_mariadb/: CVE-2026-22730: SQL Injection in Spring AI’s MariaDB Vector Store
Published Mar 19, 2026
·Updated
Affected Software
1 affected component
Spring Spring AI MariaDB Vector Store
Frequently Asked Questions
1
What is the severity of CVE-2026-22730?
CVE-2026-22730 is classified as a high severity vulnerability due to its potential to allow remote attackers to execute arbitrary SQL code.
2
How do I fix CVE-2026-22730?
To fix CVE-2026-22730, update to the latest version of Spring AI that addresses this SQL injection vulnerability.
3
What types of attacks can CVE-2026-22730 enable?
CVE-2026-22730 can enable attackers to perform unauthorized database commands, potentially compromising the integrity of the database.
4
Who is affected by CVE-2026-22730?
Any application using Spring AI's MariaDB Vector Store that is not updated to the patched version is vulnerable to CVE-2026-22730.
5
What is the impact of exploiting CVE-2026-22730?
Exploiting CVE-2026-22730 can lead to data leakage, data manipulation, or unauthorized access to sensitive information in the database.