VYPR

Flask Caching

by Flask Caching Project

CVEs (1)

  • CVE-2021-33026CriMay 13, 2021
    risk 0.64cvss 9.8epss 0.07

    The Flask-Caching extension through 1.10.1 for Flask relies on Pickle for serialization, which may lead to remote code execution or local privilege escalation. If an attacker gains access to cache storage (e.g., filesystem, Memcached, Redis, etc.), they can construct a crafted…