Open Redirect in Flask-AppBuilder
Moderate severity
GitHub Reviewed
Published
Mar 24, 2022
in
dpgaspar/Flask-AppBuilder
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Mar 24, 2022
Published to the GitHub Advisory Database
Mar 25, 2022
Reviewed
Mar 25, 2022
Last updated
Jan 27, 2023
Flask-AppBuilder is an application development framework built on top of Flask. Versions prior to 3.4.5 contain an open redirect vulnerability when using the database authentication login page. There are no known workarounds. Users are recommended to upgrade to version 3.4.5 or later.
For more information
If you have any questions or comments about this advisory:
References