Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-27205

Опубликовано: 21 фев. 2026
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

Flask is a web server gateway interface (WSGI) web application framework. In versions 3.1.2 and below, when the session object is accessed, Flask should set the Vary: Cookie header., resulting in a Use of Cache Containing Sensitive Information vulnerability. The logic instructs caches not to cache the response, as it may contain information specific to a logged in user. This is handled in most cases, but some forms of access such as the Python in operator were overlooked. The severity and risk depend on the application being hosted behind a caching proxy that doesn't ignore responses with cookies, not setting a Cache-Control header to mark pages as private or non-cacheable, and accessing the session in a way that only touches keys without reading values or mutating the session. The issue has been fixed in version 3.1.3.

A flaw was found in Flask, a Web Server Gateway Interface (WSGI) web application framework. When a Flask application accesses the session object using certain methods, it may fail to set the Vary: Cookie header. This oversight can cause sensitive, user-specific information to be improperly cached by a caching proxy, potentially leading to information disclosure to unauthorized parties.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenShift AI (RHOAI)rhoai/odh-kf-notebook-controller-rhel8Out of support scope
Red Hat OpenShift AI (RHOAI)rhoai/odh-notebook-controller-rhel8Out of support scope
Red Hat Quay 3quay/quay-rhel8Out of support scope
Red Hat Quay 3quay/quay-rhel9Fix deferred
Red Hat Satellite 6satellite/iop-advisor-engine-rhel9Fix deferred
Red Hat Satellite 6satellite/iop-host-inventory-rhel9Fix deferred
Red Hat Satellite 6satellite/iop-insights-engine-rhel9Fix deferred
Red Hat Satellite 6satellite/iop-vulnerability-engine-rhel9Fix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-524
https://bugzilla.redhat.com/show_bug.cgi?id=2441596flask: Flask: Information disclosure via improper caching of session data

EPSS

Процентиль: 1%
0.00011
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 1 месяца назад

Flask is a web server gateway interface (WSGI) web application framework. In versions 3.1.2 and below, when the session object is accessed, Flask should set the Vary: Cookie header., resulting in a Use of Cache Containing Sensitive Information vulnerability. The logic instructs caches not to cache the response, as it may contain information specific to a logged in user. This is handled in most cases, but some forms of access such as the Python in operator were overlooked. The severity and risk depend on the application being hosted behind a caching proxy that doesn't ignore responses with cookies, not setting a Cache-Control header to mark pages as private or non-cacheable, and accessing the session in a way that only touches keys without reading values or mutating the session. The issue has been fixed in version 3.1.3.

CVSS3: 4.3
nvd
около 1 месяца назад

Flask is a web server gateway interface (WSGI) web application framework. In versions 3.1.2 and below, when the session object is accessed, Flask should set the Vary: Cookie header., resulting in a Use of Cache Containing Sensitive Information vulnerability. The logic instructs caches not to cache the response, as it may contain information specific to a logged in user. This is handled in most cases, but some forms of access such as the Python in operator were overlooked. The severity and risk depend on the application being hosted behind a caching proxy that doesn't ignore responses with cookies, not setting a Cache-Control header to mark pages as private or non-cacheable, and accessing the session in a way that only touches keys without reading values or mutating the session. The issue has been fixed in version 3.1.3.

CVSS3: 4.3
debian
около 1 месяца назад

Flask is a web server gateway interface (WSGI) web application framewo ...

suse-cvrf
19 дней назад

Security update for python-Flask

github
около 1 месяца назад

Flask session does not add `Vary: Cookie` header when accessed in some ways

EPSS

Процентиль: 1%
0.00011
Низкий

4.3 Medium

CVSS3