Known vulnerabilities in The Pallets Projects Werkzeug

Website: https://palletsprojects.com/
Total Security Bulletins: 13

Security bulletins (13)

Secuity bulletin Severity Status Published
SB2026022322: Improper Handling of Windows Device Names in Werkzeug Medium
Patched
23.02.2026
SB2026010911: Improper Handling of Windows Device Names in Werkzeug Medium
Patched
09.01.2026
SB2025120137: Improper Handling of Windows Device Names in Werkzeug Medium
Patched
01.12.2025
SB2024103173: Multiple vulnerabilities in Werkzeug Medium
Patched
31.10.2024
SB2024050606: Remote code execution in Werkzeug Medium
Patched
06.05.2024
SB2023103003: Denial of service in Werkzeug Medium
Patched
30.10.2023
SB2023021673: Multiple vulnerabilities in Werkzeug Medium
Patched
16.02.2023
SB2020112506: Open Redirect in Werkzeug library Medium
Patched
25.11.2020
SB2020040926: Insufficient Randomness in The Pallets Projects Werkzeug Low
Patched
09.04.2020
SB2020040925: Insufficient Entropy in The Pallets Projects Werkzeug Low
Patched
09.04.2020
SB2019080917: Insufficient Entropy in Werkzeug Medium
Patched
09.08.2019
SB2019072807: Input validation error in Werkzeug Medium
Patched Public exploit
28.07.2019
SB2017102313: Cross-site scripting in Werkzeug Low
Patched
23.10.2017