CVE-2024-55028: Nasa Fprime

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a crafted Vue file.

Affected products

  • Nasa Fprime: version 3.4.3 only

Published 2025-03-25. Last modified 2026-06-17.