-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 20 May 2025 16:37:09 +0200 Source: python-flask-cors Architecture: source Version: 6.0.0-1 Distribution: unstable Urgency: medium Maintainer: Debian Python Team <team+python@tracker.debian.org> Changed-By: Carsten Schoenert <c.schoenert@t-online.de> Closes: 1100988 Changes: python-flask-cors (6.0.0-1) unstable; urgency=medium . * Team upload. * New upstream version 6.0.0 Fixed CVE issues in upstream version 6.0.0: CVE-2024-6839: Flask-CORS improper regex path matching vulnerability CVE-2024-6844: Flask-CORS allows for inconsistent CORS matching CVE-2024-6866: Flask-CORS vulnerable to Improper Handling of Case Sensitivity (Closes: #1100988) Checksums-Sha1: 9415371a7921dc2ff7c7dc73f8306f8673fb2f27 2328 python-flask-cors_6.0.0-1.dsc 7102d0e930d6f148910456738436ebd421435cad 87271 python-flask-cors_6.0.0.orig.tar.gz 1f539ef5f2034b53781ef4035b1bde238de98942 7992 python-flask-cors_6.0.0-1.debian.tar.xz dc7b61ce0608637600b2c590061fc87fe9d0f54d 8712 python-flask-cors_6.0.0-1_amd64.buildinfo Checksums-Sha256: 57377c080cf179a1e655f8df6c7da19fd305f9f311819335e774adc7959c312b 2328 python-flask-cors_6.0.0-1.dsc 606b9431d3b9a1bf5ec84989a48a73330992e4183e070230e4bc7b0371d003aa 87271 python-flask-cors_6.0.0.orig.tar.gz a64030d10df78a1343fc8af7f6ded704e9e09c3b816aa71ffeeedcb41f9d0759 7992 python-flask-cors_6.0.0-1.debian.tar.xz 79bc5f13219fa29c4ea555e009d705242dda1aed0d2846367c7b5b210adb144a 8712 python-flask-cors_6.0.0-1_amd64.buildinfo Files: 9e09c1a34c8b0442fc6d5df23f24fa74 2328 python optional python-flask-cors_6.0.0-1.dsc 2f30d577a88ef7f7ba11fe2d77168ec3 87271 python optional python-flask-cors_6.0.0.orig.tar.gz b304730499761284bf4e01609d0c6aa1 7992 python optional python-flask-cors_6.0.0-1.debian.tar.xz 8b564d8b43bcb457b298549cae336871 8712 python optional python-flask-cors_6.0.0-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJMBAEBCgA2FiEEtw38bxNP7PwBHmKqgwFgFCUdHbAFAmgslvgYHGMuc2Nob2Vu ZXJ0QHQtb25saW5lLmRlAAoJEIMBYBQlHR2w700P/3TqDhnnhhZs1oY5VYwzku6s 8sMZ8udnFlZk2iJNj8hjB21jGy2vFGdLtIF2L0lDUurjv51Eo3ML2V/Q3F8oPEIB cvnWdY0r0S+toeM5OwZbcDGPRI24lo9eHMtMCIGQ9Hs2ej2i+G6BC47S7sr/RKAX E6tQsuhsrfesm32FaIGEjfowJFIkPZp4O34B3jYyf31xdPy3s+9OFyMyvuqHuitN pHg7wA8OcGJWxYD2Xx3FF/dR6qdti2K2krzoi0kXPnHoGaf8lOTnUvbgWbDbbKR2 lD5rr6bp40rvBAU2yVlf+4FwmH7GQ57RUoyrorwR59uLNP3yEfHrCpmQLixVSrm1 4LAk6qrfUi2hSzsnMYo+GfVDHWsYvbPEcRbJm1M1SG+JHVW8cqBBAp/HNYd8JR0I EBftlzvjTDSMhT1iXCvwYeWdfHuftSAiyrNTSiChlSlxptAsGWBU+8ZdZYX9XYFT O3IIcQ5HbEhqokPumfLAyjKxgszApymL1UaR83FnUqrvoDrLpj/N9r1VNfyvb9gq w+LJmS6Pscpb07FrExKHFhRR0eg6OupRjRrmmBeYh/TJ+KLgxxUPYW2Dufv5Exqg iGVV8h70LhUkSyz2pp/sBdtDX32rROBDCj6W5GLOZZH55AFIKer61BWNKqzW19Vn o3LcapF9C0tURvpioSu+ =fcm0 -----END PGP SIGNATURE-----