cve/2021/CVE-2021-33609.md
2024-05-25 21:48:12 +02:00

844 B

CVE-2021-33609

Description

Missing check in DataCommunicator class in com.vaadin:vaadin-server versions 8.0.0 through 8.14.0 (Vaadin 8.0.0 through 8.14.0) allows authenticated network attacker to cause heap exhaustion by requesting too many rows of data.

POC

Reference

No PoCs from references.

Github