Vulnerabilidades em dpgaspar
13 resultadosAnálise Vexday
O fornecedor dpgaspar apresenta 13 vulnerabilidades catalogadas, com apenas 1 de severidade crítica e nenhuma sob ataque ativo documentado. A fraqueza dominante é em autenticação (CWE-287), indicando problemas estruturais de controle de acesso. A ausência de publicações recentes sugere um risco relativamente estável, embora a prevalência de falhas autenticação mereça atenção em arquitetura de segurança.
CVE-2021-29621MEDIUMObservable Response Discrepancy in Flask-AppBuilderEPSS 3.4%CVE-2021-41265HIGHImproper Authentication in Flask-AppBuilderEPSS 1.3%CVE-2022-24776MEDIUMOpen Redirect in Flask-AppBuilderEPSS 0.9%CVE-2024-25128CRITICALFlask-AppBuilder incorrect authentication when using auth type OpenID EPSS 0.9%CVE-2022-31177LOWPossible to infer sensitive information through query strings in Flask-AppBuilderEPSS 0.7%CVE-2021-32805HIGHURL Redirection to Untrusted Site ('Open Redirect') in Flask-AppBuilderEPSS 0.7%CVE-2023-34110LOWFlask-AppBuilder vulnerable to possible disclosure of sensitive information on user errorEPSS 0.7%CVE-2023-29005HIGHNo Rate Limiting on Login AUTH DBEPSS 0.6%CVE-2024-27083MEDIUMFlask-AppBuilder's OAuth login page subject to Cross Site Scripting (XSS)EPSS 0.6%CVE-2025-58065MEDIUMFlask App Builder has an Authentication Bypass vulnerability when using non AUTH_DB methodsEPSS 0.4%CVE-2025-24023LOWObservable Response Discrepancy in flask-appbuilderEPSS 0.3%CVE-2024-45314LOWFlask-AppBuilder login form allows browser to cache sensitive fieldsEPSS 0.3%CVE-2025-32962MEDIUMFlask-AppBuilder open redirect vulnerability using HTTP host injectionEPSS 0.2%