2023-12-26 23:00:28 +00:00

24 lines
752 B
JSON

{
"id": "CVE-2023-49438",
"sourceIdentifier": "cve@mitre.org",
"published": "2023-12-26T22:15:13.973",
"lastModified": "2023-12-26T22:15:13.973",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows attackers to redirect unsuspecting users to malicious sites via a crafted URL by abusing the ?next parameter on the /login and /register routes."
}
],
"metrics": {},
"references": [
{
"url": "https://github.com/Flask-Middleware/flask-security",
"source": "cve@mitre.org"
},
{
"url": "https://github.com/brandon-t-elliott/CVE-2023-49438",
"source": "cve@mitre.org"
}
]
}