In Pallets Jinja before 2.10.1, str.format_map allows a sandbox escape.
Published: 2019-04-07
CVSS: 8.6
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Download Exploit for CVE-2019-10906 here:
Use Tor Browser to access .onion links.
Check our team here:
https://wednesfieldacademy.com/exploit-410-cve-2025-58726/
https://wednesfieldacademy.com/exploit-696-cve-2023-28461/



