Fastapiadmin

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 8
    Known Exploited: 0
    0
    Critical Level Threats
    0
    High Level Threats
    8
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-36728

    Markdown‑based XSS in FastapiAdmin Chat Function

    Last Modified: Jun 10, 2026
    Published: Jun 09, 2026

    CVE-2026-36725

    A markdown based cross-site scripting (XSS) vulnerability in the /system/notice/create endpoint of FastapiAdmin v2.2.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the notice_content parameter.

    Last Modified: Jun 10, 2026
    Published: Jun 09, 2026

    CVE-2026-36724

    FastapiAdmin Job Update Denial of Service

    Last Modified: Jun 10, 2026
    Published: Jun 09, 2026

    CVE-2026-2979

    FastApiAdmin Scheduled Task API controller.py user_avatar_upload_controller unrestricted upload

    Last Modified: Apr 18, 2026
    Published: Feb 23, 2026

    CVE-2026-2978

    FastApiAdmin Scheduled Task API controller.py upload_file_controller unrestricted upload

    Last Modified: Apr 18, 2026
    Published: Feb 23, 2026
    Items Per Page