Security Advisory

CVE-2021-31410

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-04-23 16:08:31
Last updated 2024-09-17 02:37:25
Assigner Vaadin
CVSS score 8.6
State PUBLISHED

Description

Overly relaxed configuration of frontend resources server in Vaadin Designer versions 4.3.0 through 4.6.3 allows remote attackers to access project sources via crafted HTTP request.