FLAT-FGXXJ (CVE-2026-34531)
Authentication mechanism absence or evasion In python-flask-httpauth
4.8
Medium
Ecosystem: Debian
Component: python-flask-httpauth
FLAT-J0Q2U (CVE-2026-27205)
Cached form fields In flask
0.6
Low
Ecosystem: Debian
Component: flask
FLAT-IRPY6 (DLA-4197-1)
Server-side request forgery (SSRF) In python-flask-cors
7.9
High
Ecosystem: Debian
Component: python-flask-cors
FLAT-2Z0DN (DLA-3545-1)
Lack of data validation In flask-security
1.3
Low
Ecosystem: Debian
Component: flask-security
FLAT-XNZTC (DLA-3536-1)
Lack of data validation In flask
1.3
Low
Ecosystem: Debian
Component: flask
FLAT-C8UZO (DSA-5442-1)
Lack of data validation In flask
1.3
Low
Ecosystem: Debian
Component: flask
FLAT-MFWNI (CVE-2023-30861)
Insecurely generated cookies In flask
6.6
Medium
Ecosystem: Debian
Component: flask
FLAT-XDNAC (DSA-4775-1)
Lack of data validation In python-flask-cors
1.3
Low
Ecosystem: Debian
Component: python-flask-cors
FLAT-W1S5Z (DLA-1892-1)
Lack of data validation In flask
1.3
Low
Ecosystem: Debian
Component: flask