Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-765j-9r45-w2q2
  • PyPI/flask-appbuilder
Flask App Builder has an Authentication Bypass vulnerability when using non AUTH_DB methods 11 Sep 2025
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-99pm-ch96-ccp2
  • PyPI/flask-appbuilder
Flask-AppBuilder open redirect vulnerability using HTTP host injection 16 May 2025
  • Fix available
  • Severity - 4.3 (Medium)
PYSEC-2025-15
  • PyPI/flask-appbuilder
See record for full details 03 Mar 2025
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-p8q5-cvwx-wvwp
  • PyPI/flask-appbuilder
Flask-AppBuilder Observable Response Discrepancy 03 Mar 2025
  • Fix available
  • Severity - 3.7 (Low)
GHSA-fw5r-6m3x-rh7p
  • PyPI/flask-appbuilder
Flask-AppBuilder's login form allows browser to cache sensitive fields 04 Sep 2024
  • Fix available
  • Severity - 4.8 (Medium)
GHSA-j2pw-vp55-fqqj
  • PyPI/flask-appbuilder
Flask-AppBuilder vulnerable to incorrect authentication when using auth type OpenID 28 Feb 2024
  • Fix available
  • Severity - 9.1 (Critical)
GHSA-fqxj-46wg-9v84
  • PyPI/flask-appbuilder
Flask-AppBuilder's OAuth login page subject to Cross Site Scripting (XSS) 28 Feb 2024
  • Fix available
  • Severity - 4.3 (Medium)
PYSEC-2023-94
  • PyPI/flask-appbuilder
  • github.com/dpgaspar/Flask-AppBuilder
See record for full details 22 Jun 2023
  • Fix available
GHSA-jhpr-j7cq-3jp3
  • PyPI/flask-appbuilder
Flask-AppBuilder vulnerable to possible disclosure of sensitive information on user error 22 Jun 2023
  • Fix available
  • Severity - 5.1 (Medium)
GHSA-9hcr-9hcv-x6pv
  • PyPI/flask-appbuilder
Flask-AppBuilder Has No Rate Limiting on Login AUTH DB 10 Apr 2023
  • Fix available
  • Severity - 7.5 (High)
PYSEC-2022-247
  • PyPI/flask-appbuilder
See record for full details 01 Aug 2022
  • Fix available
GHSA-32ff-4g79-vgfc
  • PyPI/flask-appbuilder
Flask-AppBuilder before v4.1.3 allows inference of sensitive information through query strings 29 Jul 2022
  • Fix available
  • Severity - 2.7 (Low)
GHSA-2ccw-7px8-vmpf
  • PyPI/flask-appbuilder
Open Redirect in Flask-AppBuilder 25 Mar 2022
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-wfjw-w6pv-8p7f
  • PyPI/flask-appbuilder
Observable Response Discrepancy in Flask-AppBuilder 01 Feb 2022
  • Fix available
  • Severity - 6.9 (Medium)
PYSEC-2022-24
  • PyPI/flask-appbuilder
See record for full details 31 Jan 2022
  • Fix available
GHSA-m3rf-7m4w-r66q
  • PyPI/flask-appbuilder
Improper Authentication in Flask-AppBuilder 09 Dec 2021
  • Fix available
  • Severity - 8.6 (High)