CVE-2020-36321: Path Traversal
(updated )
Improper URL validation in development mode handler in com.vaadin:flow-server
allows attacker to request arbitrary files stored outside of intended frontend resources folder.
References
Detect and mitigate CVE-2020-36321 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →