CVE-2026-107397

CVE-2026-107397 published: Indico is an event management system that uses Flask-Multipass, a multi-backend authentication system for Flask. Prior to 3.3.13, users who can create content, including speakers who can create minutes, can store crafted HTML in event minutes. When concurre...

View full NVD advisory → ← Back to CVE watch