CNNVD-202507-3052 Information

CNNVD ID

CNNVD-202507-3052

CVE-2025-54365

  • CNNVD Published: 2025-07-23

Description (Chinese)

fastapi-guard是Renzo F个人开发者的一个FastAPI的安全库,提供中间件来控制IP、记录请求和检测渗透尝试。 fastapi-guard 3.0.1版本存在安全漏洞,该漏洞源于正则表达式长度限制不当,可能导致绕过防护机制。

Description (English)

Fastapi-guard is a FastAPI safe house for Renzo F personal developers, providing intermediates to control IP, record requests and test infiltration attempts. There is a security loophole in version 3.1 of fastapi-guard, which stems from inappropriate limits on the length of the regular expression and may lead to circumvention of protective mechanisms.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-07-23

Last Modified

2026-02-24

References

https://github.com/rennf93/fastapi-guard/security/advisories/GHSA-rrf6-pxg8-684g https://github.com/rennf93/fastapi-guard/commit/0829292c322d33dc14ab00c5451c5c138148035a https://github.com/rennf93/fastapi-guard/commit/d9d50e8130b7b434cdc1b001b8cfd03a06729f7f

Patch

https://github.com/rennf93/fastapi-guard/releases

Share on: