depscope
Packages
IntegrateAPI DocsCuratorBenchmarkCoverage
Sign inGet API access
depscope/conda/flask_cors

flask_cors

condav4.0.0

Cross Origin Resource Sharing ( CORS ) support for Flask

License MITpermissive4 versions1 maintainers0 deps4,051 weekly dl
corydolphin/flask-cors
35
/ 100
Health
update required

[email protected] has vulnerabilities — update to latest

Update to >= 4.0.2 to fix known vulnerabilities

  • Low health score (35/100)
  • 2 high severity vulnerabilities
Health breakdown0 – 100
5/25
maintenance
6/20
popularity
7/25
security
12/15
maturity
5/15
community
Vulnerabilities
6
2 high4 medium
Advisories (6)
SeverityIDSummaryFixed in
mediumCVE-2024-6866Flask-CORS vulnerable to Improper Handling of Case Sensitivity6.0.0
mediumCVE-2024-6839Flask-CORS improper regex path matching vulnerability6.0.0
mediumCVE-2024-1681flask-cors vulnerable to log injection when the log level is set to debug4.0.1
mediumCVE-2024-6844Flask-CORS allows for inconsistent CORS matching6.0.0
highCVE-2024-6221Flask-CORS allows the `Access-Control-Allow-Private-Network` CORS header to be set to true by default4.0.2
highCVE-2024-6221A vulnerability in corydolphin/flask-cors up to version 4.0.1 allows the `Access-Control-Allow-Private-Network` CORS header to be set to true by default, without any configuration option. This behavior can expose private network resources to unauthorized external access, leading to significant security risks such as data breaches, unauthorized access to sensitive information, and potential network intrusions.4.0.2
OSS Scorecard
OpenSSF security posture score
3.3/10
weak
Maintainer trust
Active maintainers (3m)
1
Contributors (12m)
4
Primary author dominance
50%
GitHub stars
933
single active maintainer 3m

Health History

Dependency Tree

License Audit

API access

Get this data programmatically — free, no authentication.

curl https://depscope.dev/api/check/conda/flask_cors

First published · 2020-08-31 03:02:26.432000+00:00

Last updated · 2025-04-22 14:57:19.339000+00:00

DepScope

Package intelligence for AI agents. 19 ecosystems.

Resources
API DocumentationHallucination BenchmarkFor EnterpriseSwagger / OpenAPIPopular PackagesCoverageAI Plugin SetupWatch the pitch (60s)
Legal
Legal hubPrivacy PolicyTerms of ServiceCookie PolicyAcceptable UseAttributionDPASub-processorsSecurityImprintContact中文
© 2026 Cuttalo srl — Italy · VAT IT03242390734Built for AI agents