← Back to CVE List

CVE-2023-49438

Published: 2023-12-26T22:15Z
Last Modified: 2024-11-21T08:33Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows attackers to redirect unsuspecting users to malicious sites via a crafted URL by abusing the ?next parameter on the /login and /register routes. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt