Safety vulnerability ID: 73129
The information on this page was manually curated by our Cybersecurity Intelligence Team.
In flask-appbuilder affected versions, the authentication database login form's default cache directives allow browsers to locally store sensitive data. This poses a security risk, particularly in environments where computer resources are shared. The latest release contains a patch addressing this issue. If upgrading is not feasible, users can mitigate the vulnerability by configuring their web server to send specific HTTP headers for the /login endpoint, following the instructions provided in the GitHub Security Advisory.
Latest version: 4.5.2
Simple and rapid application development framework, built on top of Flask. includes detailed security, auto CRUD generation for your models, google charts and much more.
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application