Flask-security

Latest version: v5.5.2

Vulnerabilities (7)

CVE/PVE Vulnerability ID Advisory Affected versions Severity Severity Score
PVE-2024-72454 72454

Reports indicate that all versions of Flask-Security have an open red…

  • <4.1.0
- -
PVE-2024-72455 72455

In affected versions of Flask-Security, a GET request to /tf-qrcode r…

  • <4.0.0rc2
- -
PVE-2024-72456 72456

In affected versions of Flask-Security, a GET request to /login?inclu…

  • <3.4.5
- -
PVE-2022-45183 45183

Flask-security 3.1.0 fixes timing attack on login form. https://gith…

  • <3.1.0
HIDDEN X.Y
PVE-2021-27545 27545

Flask-security 1.6.0 makes AJAX requests now send a CSRF token for se…

  • <1.6.0
HIDDEN X.Y
CVE-2023-49438 65194

An open redirect vulnerability in the python package Flask-Security-T…

  • >=0,<5.3.3
MEDIUM 6.1
CVE-2021-23385 44501

All versions of flask-security are affected by CVE-2021-23385, an ope…

  • >0
MEDIUM 6.1