fastapi-admin@0.3.3 vulnerabilities

A fast admin dashboard based on FastAPI and TortoiseORM with tabler ui, inspired by Django admin.

Direct Vulnerabilities

Known vulnerabilities in the fastapi-admin package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Cross-site Scripting (XSS)

fastapi-admin is an A fast admin dashboard based on FastAPI and TortoiseORM with tabler ui, inspired by Django admin.

Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the Create Product function. An attacker can execute arbitrary web scripts or HTML by injecting a crafted payload into the Config Label parameter.

How to fix Cross-site Scripting (XSS)?

There is no fixed version for fastapi-admin.

[0,)
  • M
Cross-site Scripting (XSS)

fastapi-admin is an A fast admin dashboard based on FastAPI and TortoiseORM with tabler ui, inspired by Django admin.

Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the Config-Create function. An attacker can execute arbitrary web scripts or HTML by injecting a crafted payload into the Product Name parameter.

How to fix Cross-site Scripting (XSS)?

There is no fixed version for fastapi-admin.

[0,)