flask-session-captcha_project CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

flask-session-captcha_project vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to flask-session-captcha_project, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-24880 flask-session-captcha is a package which allows users to extend Flask by adding an image based captcha stored in a server side session. In versions prior to 1.2.1, he `captcha.validate()` function would return `None` if passed no value (e.g. by submitting an having an empty form). If implementing users were checking the return value to be **False**, the captcha verification check could be bypassed. Version 1.2.1 fixes the issue. Users can workaround the issue by not explicitly checking that the [email protected] 5.3 1.10% 2022-04-25 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence