CVE-2019-16926
28.09.2019, 00:15
Flower 0.9.3 has XSS via a crafted worker name. NOTE: The project author stated that he doesn't think this is a valid vulnerability. Worker name and task name arent user facing configuration options. They are internal backend config options and person having rights to change them already has full access
Vendor | Product | Version |
---|---|---|
flower_project | flower | 1.0.0 |
𝑥
= Vulnerable software versions