Security Advisory

CVE-2023-25500

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-06-22 12:49:06
Last updated 2024-12-05 19:59:30
Assigner Vaadin
State PUBLISHED

Description

Possible information disclosure in Vaadin 10.0.0 to 10.0.23, 11.0.0 to 14.10.1, 15.0.0 to 22.0.28, 23.0.0 to 23.3.13, 24.0.0 to 24.0.6, 24.1.0.alpha1 to 24.1.0.rc2, resulting in potential information disclosure of class and method names in RPC responses by sending modified requests.