Flask-AppBuilder is an application development framework, built on top of the Flask web framework. Flask-AppBuilder contains an open redirect vulnerability when using database authentication login page on versions below 3.4.5. This issue is fixed in version 3.4.5. There are currently no known workarounds.
History

Wed, 23 Apr 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 07 Mar 2025 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Dpgaspar
Dpgaspar flask-appbuilder
CPEs cpe:2.3:a:flask-appbuilder_project:flask-appbuilder:*:*:*:*:*:*:*:* cpe:2.3:a:dpgaspar:flask-appbuilder:*:*:*:*:*:*:*:*
Vendors & Products Flask-appbuilder Project
Flask-appbuilder Project flask-appbuilder
Dpgaspar
Dpgaspar flask-appbuilder

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2022-03-24T19:45:14.000Z

Updated: 2025-04-23T18:44:03.621Z

Reserved: 2022-02-10T00:00:00.000Z

Link: CVE-2022-24776

cve-icon Vulnrichment

Updated: 2024-08-03T04:20:50.474Z

cve-icon NVD

Status : Modified

Published: 2022-03-24T20:15:09.577

Modified: 2025-03-07T14:37:51.330

Link: CVE-2022-24776

cve-icon Redhat

No data.