MEDIUM
jowilf
CVE published 2026-08-26
CVE-2026-54553
An authenticated user with access to an affected list endpoint in Starlette-Admin can submit arbitrary field names to bypass restrictions, causing limited information exposure and potential denial of service. This issue allows attackers to access sensitive information and potentially disrupt service, highlighting the need for prompt remediation and verification of input validation and access controls. Def [truncated]