<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Jsonpath-Injection — CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/tags/jsonpath-injection/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata — refreshed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Thu, 19 Mar 2026 12:35:09 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/tags/jsonpath-injection/feed.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-22729: JSONPath Injection Vulnerability in Spring AI's PgVectorStore</title><link>https://feed.craftedsignal.io/briefs/2024-06-spring-ai-jsonpath-injection/</link><pubDate>Thu, 19 Mar 2026 12:35:09 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2024-06-spring-ai-jsonpath-injection/</guid><description>CVE-2026-22729 is a JSONPath Injection vulnerability found in Spring AI's PgVectorStore, potentially allowing for unauthorized data access or modification.</description><content:encoded>&lt;p>CVE-2026-22729 is a newly identified JSONPath Injection vulnerability affecting the PgVectorStore component within the Spring AI framework. The vulnerability arises from insufficient input sanitization when processing JSONPath expressions, potentially allowing attackers to inject malicious code into queries. Successful exploitation could lead to unauthorized data access, modification, or even remote code execution depending on the application&amp;rsquo;s configuration and permissions. This vulnerability…&lt;/p>
</content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>cve-2026-22729</category><category>jsonpath-injection</category><category>spring-ai</category></item></channel></rss>