
CVE-2026-22729: JSONPath Injection in Spring AI’s PgVectorStore
CybersecurityVulnerabilitiesInjection AttacksSoftware Security
The post references a vulnerability (CVE-2026-22729) in Spring AI’s PgVectorStore related to JSONPath injection. The issue involves improper handling of user-supplied input in JSONPath queries. The vulnerability is documented in an external blog post linked in the Reddit submission.