Werkzeug

Latest version: v3.0.3

The latest version of werkzeug with no known security vulnerabilities is 3.0.3. We recommend installing version 3.0.3.

The information on this page was curated by experts in our Cybersecurity Intelligence Team.

Latest release
v3.0.3 at May 6, 2024
License
BSD-2-Clause (BSD 2-Clause "Simplified" License)

Description

The comprehensive WSGI web application library.

Resources

Vulnerabilities (13)

See all vulnerabilities
Affected versions:

==3.0.0 | <2.3.8

Werkzeug 3.0.1 and 2.3.8 include a security fix: Slow multipar…
Affected versions:

<2.2.3

Werkzeug 2.2.3 includes a fix for CVE-2023-23934: Browsers may…
Affected versions:

<2.2.3

Werkzeug 2.2.3 includes a fix for CVE-2023-25577: Prior to ver…
Affected versions:

<0.8.3

Werkzeug 0.8.3 fixes an XSS problem with redirect targets comi…
Affected versions:

<0.8

werkzeug before 0.8 allowed newlines in the header datastructu…
Affected versions:

<0.3.1

Werkzeug 0.3.1 prevents a timing attack against 'werkzeug.cont…

Versions (94)

See all versions

Has known vulnerabilities

  • 3.0.3
  • 3.0.2
  • 3.0.1
  • 3.0.0
  • 2.3.8
  • 2.3.7
  • 2.3.6
  • 2.3.5
  • 2.3.4
  • 2.3.3
  • 2.3.2
  • 2.3.1
  • 2.3.0
  • 2.2.3
  • 2.2.2
  • 2.2.1
  • 2.2.0
  • 2.2.0a1
  • 2.1.2
  • 2.1.1