Skip to content

CVEs on flask-core and pymongo affects Taipy 3.1.1

Moderate
jrobinAV published GHSA-pp84-v3mw-gg4w Aug 27, 2024

Package

pip taipy (pip)

Affected versions

3.1.1

Patched versions

4.0.0

Description

Summary

CVEs on 3.1.1

Fixed on patch versions: >=3.1.2
and on major releases: >=4.0.0

Details

CVE-2024-1681: flask-core <4.0.1

latest version of taipy 3.1.1 needs <=4.0.0

CVE-2024-5629: pymongo <4.6.3

latest version of taipy 3.1.1 needs <=4.6.1

PoC

please upgrade to these versions

Impact

pre-commit breaks

Severity

Moderate

CVE ID

CVE-2024-5629

Weaknesses

No CWEs

Credits