web2py Vulnerabilities
CVE security advisories and vulnerability history for web2py.
Overview
web2py has 14 published CVE records since 2013, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 3 have a known public exploit. The average CVSS base score across scored CVEs is 5.6.
This page aggregates every publicly disclosed vulnerability (CVE) affecting web2py products, with severity breakdowns, the most-affected products, the most common weakness types, and the latest disclosures.
Severity and exploitation
How the CVSS severity of web2py's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
12 additional CVEs have no CVSS severity score.