Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-2478
  • PyPI/flask-security-too
Flask-Security-Too OAuth reauthentication freshness bypass via cross- user OAuth identity acceptance 13 Jul
  • Fix available
GHSA-f66q-9rf6-8795
  • PyPI/flask-security-too
Flask-Security-Too: WebAuthn reauthentication freshness bypass via cross-user assertion 07 Jul
  • No fix available
  • Severity - 5.3 (Medium)
PYSEC-2026-809
  • PyPI/flask-security
Flask-Security vulnerable to Open Redirect 07 Jul
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-w2j7-f3c6-g8cw
  • PyPI/flask-security
Flask-Security has an Open Redirect issue 23 Jun
  • Fix available
  • Severity - 4.7 (Medium)
GHSA-97r5-pg8x-p63p
  • PyPI/flask-security-too
Flask-Security-Too OAuth reauthentication freshness bypass via cross- user OAuth identity acceptance 22 May
  • Fix available
GHSA-672h-6x89-76m5
  • PyPI/flask-security-too
Open redirect vulnerability in Flask-Security-Too 27 Dec 2023
  • Fix available
  • Severity - 5.3 (Medium)
PYSEC-2023-248
  • PyPI/flask-security-too
See record for full details 26 Dec 2023
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-cg8c-gc2j-2wf7
  • PyPI/flask-security
Flask-Security vulnerable to Open Redirect 07 Oct 2022
  • No fix available
  • Severity - 6.1 (Medium)
GHSA-6qmf-fj6m-686c
  • PyPI/flask-security-too
Open Redirect in Flask-Security-Too 17 May 2021
  • Fix available
  • Severity - 2.1 (Low)
PYSEC-2021-123
  • PyPI/flask-security-too
See record for full details 17 May 2021
  • Fix available
GHSA-fxq4-r6mr-9x64
  • PyPI/flask-security-too
CSRF Vuln can expose user's QRcode 08 Apr 2021
  • Fix available
PYSEC-2021-91
  • PyPI/flask-security-too
  • github.com/Flask-Middleware/flask-security
See record for full details 11 Jan 2021
  • Fix available
GHSA-hh7m-rx4f-4vpv
  • PyPI/flask-security-too
CSRF can expose users authentication token 11 Jan 2021
  • Fix available
  • Severity - 8.3 (High)