6.1
CVSSv3

CVE-2023-49438

Published: 26/12/2023 Updated: 14/01/2024
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows malicious users to redirect unsuspecting users to malicious sites via a crafted URL by abusing the ?next parameter on the /login and /register routes.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

flask-security-too project flask-security-too

Github Repositories

CVE-2023-49438 - Open Redirect Vulnerability in Flask-Security-Too

CVE-2023-49438 Proof of Concept Description An open redirect vulnerability in the python package Flask-