Page MenuHomePhabricator

CVE-2018-1000656 in ores and wikilabels
Closed, ResolvedPublic

Description

More info. It can be used as a DDoS vector.
Upgrading to flask 0.12.3 would solve it

Event Timeline

Ladsgroup added a subscriber: hashar.

wikilabels is deployed, ores is waiting for review.

Ladsgroup changed the visibility from "Custom Policy" to "Public (No Login Required)".Nov 1 2018, 9:45 AM

It's in production.