Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34833
HistoryMar 25, 2022 - 3:03 p.m.

Open Redirect

2022-03-2515:03:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.001 Low

EPSS

Percentile

31.0%

flask_appbuilder is vulnerable to open redirect. The library doesn’t properly validate the next url logic for OAuth, OID and DB in the database authentication login page which allows an attacker to inject a malicious URL through to the system.

0.001 Low

EPSS

Percentile

31.0%