Vulnerability CVE-2022-24776


Published: 2022-03-24

Description:
Flask-AppBuilder is an application development framework, built on top of the Flask web framework. Flask-AppBuilder contains an open redirect vulnerability when using database authentication login page on versions below 3.4.5. This issue is fixed in version 3.4.5. There are currently no known workarounds.

Type:

CWE-601

(URL Redirection to Untrusted Site ('Open Redirect'))

 References:
https://github.com/dpgaspar/Flask-AppBuilder/security/advisories/GHSA-2ccw-7px8-vmpf
https://github.com/dpgaspar/Flask-AppBuilder/pull/1804
https://github.com/dpgaspar/Flask-AppBuilder/releases/tag/v3.4.5

Copyright 2026, cxsecurity.com

 

Back to Top