sqladmin vulnerabilities
CVEs whose affected-version data names the sqladmin package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-54529Medium· 5.3SQLAdmin is a flexible Admin interface for SQLAlchemy models
SQLAdmin is a flexible Admin interface for SQLAlchemy models. Prior to 0.27.1, ModelView.sort_query in sqladmin/models.py accepts the attacker-controlled sortBy list-view query parameter without enforcing the configured column_sortable_l…
▾ Sunlitsmithyhq · sqladminEPSS 0.38%via NVD
CVE-2026-46645Medium· 4.3PoCSQLAdmin: Authorization Bypass on `ajax_lookup`
SQLAdmin: Authorization Bypass on `ajax_lookup`
▾ Twilightsqladmin · sqladminEPSS 0.28%via OSV