CVE-2021-31405
23.04.2021, 16:15
Unsafe validation RegEx in EmailField component in com.vaadin:vaadin-text-field-flow versions 2.0.4 through 2.3.2 (Vaadin 14.0.6 through 14.4.3), and 3.0.0 through 4.0.2 (Vaadin 15.0.0 through 17.0.10) allows attackers to cause uncontrolled resource consumption by submitting malicious email addresses.Enginsight
Vendor | Product | Version |
---|---|---|
vaadin | flow | 2.0.4 ≤ 𝑥 < 2.3.3 |
vaadin | flow | 3.0.0 ≤ 𝑥 < 4.0.3 |
vaadin | vaadin | 14.0.6 ≤ 𝑥 < 14.4.4 |
vaadin | vaadin | 15.0.0 ≤ 𝑥 < 17.0.11 |
𝑥
= Vulnerable software versions