Exploit maturity not defined.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade flower
to version 2.0.0 or higher.
Affected versions of this package are vulnerable to Timing Attack via the get_current_user()
functionality, due to the usage of non-constant time string comparison to validate HTTP basic authentication credentials.