Insecure configuration of default ObjectMapper in com.vaadin:flow-server versions 3.0.0 up to and including 3.0.5 (Vaadin 15.0.0 up to and including 15.0.4) may expose sensitive data if the application also uses e.g. @RestController
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
vaadin flow |
||
vaadin vaadin |