reopen 1100988 found 1100988 6.0.0-1 thanks Hi,
the patch to fix CVE-2024-6839 seems to be incomplete and not working correctly. The adjusted test actually shows that, but the test was never run in Sid due to a naming issue. There is a proposed follow-up patch: https://github.com/corydolphin/flask-cors/pull/392 I have adjusted the information in the security tracker. Regards, Daniel
signature.asc
Description: This is a digitally signed message part