Safety vulnerability ID: 76326
The information on this page was manually curated by our Cybersecurity Intelligence Team.
User enumeration in database authentication in Flask-AppBuilder <= 4.5.3 and werkzeug >= 3.0.0. Allows for a non-authenticated user to enumerate existing usernames by timing the response time from the server when brute forcing requests to login.
Latest version: 4.6.1
Simple and rapid application development framework, built on top of Flask. includes detailed security, auto CRUD generation for your models, google charts and much more.
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application