CVE-2026-107394

CVE-2026-107394 published: Indico is an event management system that uses Flask-Multipass, a multi-backend authentication system for Flask. Prior to 3.3.13, the previous fix for CVE-2026-25738 did not cover an edge case, allowing an event organizer to submit a crafted URL that points...

View full NVD advisory → ← Back to CVE watch