Detects Spring AI applications where the MariaDBFilterExpressionConverter wraps user-controlled filter values in single quotes without escaping. An attacker with low privileges can inject arbitrary SQL via metadata filter parameters, bypassing access controls to read all documents in the vector store including restricted data, or extract database contents via error-based and time-based blind injection. Affects Spring AI 1.0.0 through 1.0.3 and 1.1.0-M1 through 1.1.2.
Is your app exploitable through CVE-2026-22730?
Scan your domain free