CVE-2026-27199: Werkzeug safe_join() allows Windows special device names

Overview

Severity
N/A
Exploit Status
Not Exploited
Patch Tuesday
2026-Feb
Released
2026-02-25
Last Updated
2026-03-03
EPSS Score
0.56% (percentile: 44.8%)

Detection & Weaponization (1 sources)

Maturity: Exploit

  • GitHub PoC: 1 repositories

Affected Products (2)

Other

  • 17600-17084
  • 19837-17086

Revision History

  • 2026-02-25: Information published.
  • 2026-03-03: Information published.