Spring Data Commons contains a property binder vulnerability which can allow an attacker to perform remote code execution.
Source: NVD ↗ · CISA KEV Catalog ↗