pallets Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by pallets
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Command Injection Vulnerability in Pallets Click Affected by Arbitrary OS Commands
CVE-2026-7246Pallets ClickClick7.2HIGHWerkzeug Debugger Vulnerability Allows Attacker to Execute Code on Developer's Machine
CVE-2024-34069PalletsWerkzeugEPSS 43%7.5HIGHWerkzeug vulnerable to high resource usage when parsing multipart/form-data containing a large part with CR/LF character at the beginning
CVE-2023-46136PalletsWerkzeugπΎπ‘8HIGHFlask vulnerable to possible disclosure of permanent session cookie due to missing Vary: Cookie header
CVE-2023-30861PalletsFlaskπΎπ‘7.5HIGHWerkzeug may allow high resource usage when parsing multipart form data with many fields
CVE-2023-25577PalletsWerkzeug7.5HIGHDenial of Service in Flask by Pallets Project
CVE-2019-1010083The Pallets ProjectFlask7.5HIGH