Missing output sanitization in test sources in org.webjars.bowergithub.vaadin:vaadin-menu-bar versions 1.0.0 up to and including 1.2.0 (Vaadin 14.0.0 up to and including 14.4.4) allows remote malicious users to execute malicious JavaScript in browser by opening crafted URL
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
vaadin vaadin |
||
vaadin vaadin-menu-bar |