fastapi-admin@0.1.8 vulnerabilities

A fast admin dashboard based on FastAPI and TortoiseORM with tabler ui, inspired by Django admin.

  • latest version

    1.0.4

  • first published

    5 years ago

  • latest version published

    2 years ago

  • licenses detected

    • [0.1.1,0.2.8)
  • Direct Vulnerabilities

    Known vulnerabilities in the fastapi-admin package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Cross-site Scripting (XSS)

    fastapi-admin is an A fast admin dashboard based on FastAPI and TortoiseORM with tabler ui, inspired by Django admin.

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the Create Product function. An attacker can execute arbitrary web scripts or HTML by injecting a crafted payload into the Config Label parameter.

    How to fix Cross-site Scripting (XSS)?

    There is no fixed version for fastapi-admin.

    [0,)
    • M
    Cross-site Scripting (XSS)

    fastapi-admin is an A fast admin dashboard based on FastAPI and TortoiseORM with tabler ui, inspired by Django admin.

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the Config-Create function. An attacker can execute arbitrary web scripts or HTML by injecting a crafted payload into the Product Name parameter.

    How to fix Cross-site Scripting (XSS)?

    There is no fixed version for fastapi-admin.

    [0,)