CVE-2026-41862 | Vmware Spring Statemachine up to 3.2.4 deserialization (EUVD-2026-38596)
A vulnerability was found in Vmware Spring Statemachine up to 3.2.4. It has been classified as critical. Affected is an unknown function. The manipulation leads to deserialization.
This vulnerability is referenced as CVE-2026-41862. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.