Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30378
HistoryMay 07, 2021 - 6:06 a.m.

Remote Code Execution (RCE)

2021-05-0706:06:00
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
30

0.0004 Low

EPSS

Percentile

5.1%

com.vaadin, flow-server is vulnerable to remote code execution. An attacker is able to inject malicious code into the frontend resources during application rebuilds.

CPENameOperatorVersion
flow serverle2.5.2
flow serverle6.0.5

0.0004 Low

EPSS

Percentile

5.1%