Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-27205

21
FAUCET Score

CVE-2026-27205 is a Use of Cache Containing Sensitive Information vulnerability affecting Flask versions 3.1.2 and below. It occurs when the session object is accessed in specific ways, leading to sensitive data potentially being cached by proxies if proper Cache-Control headers are not set. The vulnerability has a CVSS score of 4.3 (Medium) with a network attack vector and low impact on confidentiality. There is currently no known active exploitation, public exploit code, or KEV listing, although it has received some community discussion and media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
< 3.1.3CPE matchmatch criteria
cpe:2.3:a:palletsprojects:flask:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 4.0

2.3LOW

CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
PRESENT
Privileges Required
NONE
User Interaction
PASSIVE
VS Confidentiality
LOW
VS Integrity
NONE
VS Availability
NONE
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.34%
Probability of exploitation in next 30 days
EPSS Percentile
26.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
This CVE's current EPSS score of 0.0034 is in the 27th percentile among its peer group of 26,219 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (8)

github_advisorypatch availablevia nvd_reference
View patch
pippatch availablevia ghsa
Product: flaskFixed in: 3.1.3
puppetpatch availablevia llm_extracted
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Satellite 6Fixed in: satellite/iop-insights-engine-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat Quay 3Fixed in: quay/quay-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat Satellite 6Fixed in: satellite/iop-vulnerability-engine-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat Satellite 6Fixed in: satellite/iop-advisor-engine-rhel9
redhatvendor investigatingvia redhat_api
Product: Red Hat Satellite 6Fixed in: satellite/iop-host-inventory-rhel9

Vendor Advisories (3)

puppetllm-puppet-f6b992355d59f2d7

USN-8104-1: Flask vulnerability

Mar 18, 2026
redhatCVE-2026-27205Moderate

flask: Flask: Information disclosure via improper caching of session data

Feb 21, 2026
pipGHSA-68rp-wp8r-4726low

Flask session does not add `Vary: Cookie` header when accessed in some ways

Feb 19, 2026

References

github.com / pallets/flask/commit/089cb86dd22bff589a4eafb7ab8e42dc357623b4
Patch
github.com / pallets/flask/releases/tag/3.1.3
ProductRelease Notes
github.com / pallets/flask/security/advisories/GHSA-68rp-wp8r-4726
Vendor Advisory