Control: tag -1 pending Hello,
Bug #1035670 in flask reported by you has been fixed in the Git repository and is awaiting an upload. You can see the commit message below and you can check the diff of the fix at: https://salsa.debian.org/python-team/packages/flask/-/commit/ed3291de88a14c3e4d1db52d552dc5f24459edb2 ------------------------------------------------------------------------ * CVE-2023-30861: Flask vulnerable to possible disclosure of permanent session cookie due to missing Vary: Cookie header. Applied upstream patch: set Vary: Cookie header consistently for session (Closes: #1035670). ------------------------------------------------------------------------ (this message was generated automatically) -- Greetings https://bugs.debian.org/1035670