ZeroHour

CVE-2019-14806

CVSS 3.1
7.5 high
EPSS
2%p82
Published
()
Modified
Description

Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker containers share the same machine id.

Vendors
palletsprojectsopensuse
Products
werkzeug, leap
Weakness
CWE-331
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.