AVG-1965 log
Package | python-flask-security-too |
Status | Fixed |
Severity | Low |
Type | open redirect |
Affected | 4.0.1-4 |
Fixed | 4.1.0-1 |
Current | 5.5.2-1 [extra] |
Ticket | None |
Created | Tue May 18 06:54:00 2021 |
Issue | Severity | Remote | Type | Description |
---|---|---|---|---|
CVE-2021-32618 | Low | Yes | Open redirect | All versions of Flask-Security-Too allow redirects after many successful views (e.g. /login) by honoring the ?next query param. There is code in FS to... |