| [ | |
| { | |
| "cve_id": "CVE-2026-27205", | |
| "osv_id": "GHSA-68rp-wp8r-4726", | |
| "summary": "Flask session does not add `Vary: Cookie` header when accessed in some ways", | |
| "cvss_score": 8.0, | |
| "severity": "HIGH", | |
| "fixed_version": "3.1.3", | |
| "published": "2026-02-19T20:45:41Z", | |
| "ecosystem": "PyPI", | |
| "package": "flask" | |
| } | |
| ] |