com.vaadin:flow-server vulnerabilities

Licenses: Apache-2.0

Direct Vulnerabilities

Known vulnerabilities in the com.vaadin:flow-server package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Debug Messages Revealing Unnecessary Information

[1.0.0,1.0.21)[1.1.0,2.9.3)[3.0.0,9.1.2)[23.0.0,23.3.13)[24.0.0,24.0.9)[24.1.0.alpha1,24.1.0)
  • M
Information Exposure

[1.0.0,1.0.20)[1.1.0,2.8.10)[3.0.0,9.1.1)[23.0.0,23.3.11)[24.0.0,24.0.8)[24.1.0.alpha1,24.1.0)
  • L
Cross-site Scripting (XSS)

[2.0.0,2.6.2)[3.0.0,6.0.10)
  • M
Denial of Service (DoS)

[1.0.0,1.0.15)[1.1.0,2.6.2)[3.0.0,6.0.10)
  • M
Insecure Permissions

[3.0.0,6.0.6)[2.0.9,2.5.3)
  • M
Access Restriction Bypass

[5.0.0,6.0.5)
  • L
Information Exposure

[3.0.0,3.0.6)
  • H
Information Exposure

[6.0.0,6.0.2)[1.2.0,2.4.8)
  • M
Cross-site Scripting (XSS)

[1.1.0,1.4.3)[1.0.0,1.0.11)
  • L
Improper Input Validation

[1.0.0,1.0.6)
  • M
Timing Attack

[3.0.0,5.0.4)
  • M
Directory Traversal

[3.0.0,5.0.0)[2.0.0,2.4.2)
  • M
Timing Attack

[,1.0.14)[1.1.0,2.4.7)[3.0.0,5.0.3)

Package versions

524 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
25.0.0-beta115 Oct, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.315 Oct, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.23 Oct, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.126 Sep, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.016 Sep, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.0-rc211 Sep, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.0-rc19 Sep, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.0-beta35 Sep, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.0-beta229 Aug, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
24.9.0-beta128 Aug, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L