Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-1000656
Description:The Pallets Project flask version Before 0.12.3 contains a CWE-20: Improper Input Validation vulnerability in flask that can result in Large amount of memory usage possibly leading to denial of service. This attack appear to be exploitable via Attacker provides JSON data in incorrect encoding. This vulnerability appears to have been fixed in 0.12.3. NOTE: this may overlap CVE-2019-1010083.
Test IDs: 1.3.6.1.4.1.25623.1.0.891892   1.3.6.1.4.1.25623.1.0.844453   1.3.6.1.4.1.25623.1.1.4.2019.0657.1   1.3.6.1.4.1.25623.1.0.852368  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-1000656
https://lists.debian.org/debian-lts-announce/2019/08/msg00025.html
https://usn.ubuntu.com/4378-1/




© 1998-2025 E-Soft Inc. All rights reserved.