Gin Vue Admin Project maintains a modestly represented open-source web-application framework that combines Go backend (Gin) and Vue.js frontend components for rapid administrative dashboard development. The vulnerability footprint concentrates in the single gin_vue_admin product and reflects the typical input-handling and architectural weaknesses found in web frameworks operating at that layer. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gin Vue Admin Project over time
Signals from CVEs in this vendor scope (11 CVEs).
11 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-44219CRITICAL Gin-Vue-Admin before 2.4.6 mishandles a SQL database. | Nov 24, 2021 | 9.8 | 31 | NO | NO |
CVE-2022-39305CRITICAL Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack. Versions prior to 2.5.4 contain a file upload ability. Th | Oct 24, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-32177CRITICAL In "Gin-Vue-Admin", versions v2.5.1 through v2.5.3beta are vulnerable to Unrestricted File Upload that leads to execution of javascript code, through the 'Normal Upload' functional | Oct 14, 2022 | 9.0 | 29 | NO | NO |
CVE-2025-66410CRITICAL Gin-vue-admin is a backstage management system based on vue and gin. In 2.8.6 and earlier, attackers can delete any file on the server at will, causing damage or unavailability of | Dec 1, 2025 | 9.1 | 28 | NO | NO |
CVE-2022-32176CRITICAL In "Gin-Vue-Admin", versions v2.5.1 through v2.5.3b are vulnerable to Unrestricted File Upload that leads to execution of javascript code, through the "Compress Upload" functionali | Oct 17, 2022 | 9.0 | 28 | NO | NO |
CVE-2022-24844HIGH Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack. The problem occurs in the following code in server/servic | Apr 13, 2022 | 8.8 | 28 | NO | NO |
CVE-2022-21660HIGH Gin-vue-admin is a backstage management system based on vue and gin. In versions prior to 2.4.7 low privilege users are able to modify higher privilege users. Authentication is mis | Feb 9, 2022 | 8.1 | 26 | NO | NO |
CVE-2026-22786HIGH Gin-vue-admin is a backstage management system based on vue and gin. Gin-vue-admin <= v2.8.7 has a path traversal vulnerability in the breakpoint resume upload functionality. Attac | Jan 12, 2026 | 7.2 | 24 | NO | NO |
CVE-2022-47762HIGH In gin-vue-admin < 2.5.5, the download module has a Path Traversal vulnerability. | Feb 3, 2023 | 7.5 | 24 | NO | NO |
CVE-2022-39345HIGH Gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack. Gin-vue-admin prior to 2.5.4 is vulnerable to path traver | Oct 25, 2022 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (11 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gin Vue Admin Project.
Media articles that mention a CVE ID that affects a product developed by Gin Vue Admin Project — matched by CVE ID, not by vendor name.