IA Squad
SearchPT

Flask-Security

python · Flask-SecurityHeads-up

Flask-Security Open Redirect via Backslash in URL Authority

Flask-Security's validate_redirect_url() function can be bypassed using a backslash in the URL authority, allowing open redirect w

24 Jun 2026 · schedule it