Executive brief
A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a crafted Vue file.
Affected products
- PyPI fprime
Junglewise Threat Intelligence
CVE-2024-55028 · Severity: low · CVSS 3.1 · Published 2025-03-25
Technologies: fprime (PyPI). Vendors: PyPI.
A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a crafted Vue file.