The Pallets Project Flask before 1.0 is affected by: unexpected memory usage. The impact is: denial of service. The attack vector is: crafted encoded JSON data. The fixed version is: 1. NOTE: this may overlap CVE-2018-1000656.
References
Link | Resource |
---|---|
https://www.palletsprojects.com/blog/flask-1-0-released/ | Release Notes Vendor Advisory |
Configurations
Information
Published : 2019-07-17 07:15
Updated : 2020-08-24 10:37
NVD link : CVE-2019-1010083
Mitre link : CVE-2019-1010083
JSON object : View
CWE
Products Affected
palletsprojects
- flask