pkg:maven/com.vaadin/vaadin
Type
maven
Namespace
com.vaadin
Name
vaadin
Known advisories, vulnerabilities and fixes for com.vaadin/vaadin package.
Moderate
2
Low
1
Type | Version | Distribution | # CVEs | # Advisory ID | Title | Severity | Published |
---|---|---|---|---|---|---|---|
Affected | >= 24.1.0.alpha1, < 24.1.0 >= 24.0.0, < 24.0.6 >= 23.0.0, < 23.3.13 >= 11.0.0, < 14.10.1 >= 10.0.0, < 10.0.23 |
CVE-2023-25499
|
MAVEN:GHSA-5F9V-MV5G-JH5Q | Vaadin vulnerable to possible information disclosure in non visible components. | moderate |
2023-06-22T20:01:11
(15 months ago) |
|
Fixed | = 24.1.0 = 24.0.6 = 23.3.13 = 14.10.1 = 10.0.23 |
CVE-2023-25499
|
MAVEN:GHSA-5F9V-MV5G-JH5Q | Vaadin vulnerable to possible information disclosure in non visible components. | moderate |
2023-06-22T20:01:11
(15 months ago) |
|
Affected | >= 24.1.0.alpha1, < 24.1.0 >= 24.0.0, < 24.0.7 >= 23.0.0, < 23.3.14 >= 15.0.0, < 22.1.0 >= 11.0.0, < 14.10.2 >= 10.0.0, < 10.0.24 |
CVE-2023-25500
|
MAVEN:GHSA-CH48-9R3Q-PV7X | Vaadin vulnerable to possible information disclosure of class and method names in RPC response | low |
2023-06-22T20:01:03
(15 months ago) |
|
Fixed | = 24.1.0 = 24.0.7 = 23.3.14 = 22.1.0 = 14.10.2 = 10.0.24 |
CVE-2023-25500
|
MAVEN:GHSA-CH48-9R3Q-PV7X | Vaadin vulnerable to possible information disclosure of class and method names in RPC response | low |
2023-06-22T20:01:03
(15 months ago) |
|
Affected | >= 23.0.0, < 23.0.9 >= 22.0.6, < 22.0.15 >= 14.8.5, < 14.8.10 |
CVE-2022-29567
|
MAVEN:GHSA-QFR3-323W-QV27 | Possible information disclosure inside TreeGrid component with default data provider | moderate |
2022-05-25T22:40:03
(2 years ago) |
|
Fixed | = 23.0.9 = 22.0.15 = 14.8.10 |
CVE-2022-29567
|
MAVEN:GHSA-QFR3-323W-QV27 | Possible information disclosure inside TreeGrid component with default data provider | moderate |
2022-05-25T22:40:03
(2 years ago) |