PyPi: Flower

PVE-2024-99785

Safety vulnerability ID: 66044

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Mar 12, 2024 Updated at Mar 12, 2024

Advisory

Flower before 2.0.0 is vulnerable to a timing attack exploiting the `get_current_user()` …

[This advisory has been limited. Please create a free account to view the full advisory.]

Affected package

flower

Latest version: 2.0.1

Celery Flower

Affected versions

Fixed versions

Vulnerability changelog

This vulnerability has no description

Resources