Known Vulnerabilities for Designer by Vaadin
Listed below are 1 of the newest known vulnerabilities associated with "Designer" by "Vaadin".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-71564 json | Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t... | Not Provided | 2026-08-25 | 2026-08-26 |
| CVE-2026-65690 json | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its file uploa... | Not Provided | 2026-07-23 | 2026-07-24 |
| CVE-2026-65689 json | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database d... | Not Provided | 2026-07-23 | 2026-07-27 |
| CVE-2026-65688 json | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its font proce... | Not Provided | 2026-07-23 | 2026-07-24 |
| CVE-2026-65687 json | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its SVG proces... | Not Provided | 2026-07-23 | 2026-07-24 |
| CVE-2026-64815 json | In JetBrains IntelliJ IDEA before 2026.2 arbitrary code injection was possible via UI Designer form files | Not Provided | 2026-07-23 | 2026-07-24 |
| CVE-2026-63227 json | An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM pac... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-61127 json | Vulnerability in the Oracle Communications Service Catalog and Design product of Oracle Communications (component: Solution D... | Not Provided | 2026-07-21 | 2026-07-23 |
| CVE-2026-57329 json | Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions. | Not Provided | 2026-06-29 | 2026-07-01 |
| CVE-2026-50774 json | An issue in GAPTEQ Designer v.3.5 allows a remote attacker to escalate privileges via the Company Manger role. | Not Provided | 2026-08-17 | 2026-08-18 |