THREAT OPS › Threat News › [NVD] CVE-2026-19896 (LOW 3.7) — A flaw has been found in mangroup dtale up to 3.22.0. This vulnerability affects the function build_secret_key of the file dtale/app.py of the component Flask Session Cookie. This manipulation causes insufficiently random values. Remote exploitation of the attack is possible. The
[NVD] CVE-2026-19896 (LOW 3.7) — A flaw has been found in mangroup dtale up to 3.22.0. This vulnerability affects the function build_secret_key of the file dtale/app.py of the component Flask Session Cookie. This manipulation causes insufficiently random values. Remote exploitation of the attack is possible. The
CVE-2026-19896 CVSS: 3.7 LOW Published: 2026-08-15T15:16:37.507
A flaw has been found in mangroup dtale up to 3.22.0. This vulnerability affects the function build_secret_key of the file dtale/app.py of the component Flask Session Cookie. This manipulation causes insufficiently random values. Remote exploitation of the attack is possible. The attack's complexity is rated as high. It is stated tha
Indicators of compromise
- CVE-2026-19896cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-19896