Status
Justification
Impact
The CVE affects use of EndpointRequest.to() in combination with disabled endpoints (see https://spring.io/security/cve-2025-22235). thingsboard does not call EndpointRequest.to() and so does not meet the criteria necessary to be affected by this CVE
Status