Beveiligingsadvies

CVE-2025-24023

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-03 15:25:55
Laatst bijgewerkt 2025-03-03 18:41:23
Toegewezen door GitHub_M
CVSS-score 3.7
Status PUBLISHED

Beschrijving

Flask-AppBuilder is an application development framework. Prior to 4.5.3, Flask-AppBuilder allows unauthenticated users to enumerate existing usernames by timing the response time from the server when brute forcing requests to login. This vulnerability is fixed in 4.5.3.