Fix CVE-2024-24762 in FastAPI HIGH

Fix CVE-2024-24762 (ReDoS in form parsing) in FastAPI for PyPI. Paste your requirements.txt into PackageFix and get a patched version back — no CLI, no signup.

⚠ Vulnerability

CVE-2024-24762 — ReDoS in form parsing in FastAPI. Update to 0.109.1 or later.

Vulnerable Version — requirements.txt

fastapi==0.100.0

Fixed Version — requirements.txt

fastapi==0.109.1
✓ Fix

Update to 0.109.1 and run pip install -r requirements.txt to apply the fix.

Scan your dependencies now — paste your manifest, get a fixed version back in seconds.

Open PackageFix →

No signup · No CLI · No GitHub connection · Runs 100% in your browser

Frequently Asked Questions

What is CVE-2024-24762?
CVE-2024-24762 is a vulnerability in FastAPI that allows ReDoS in form parsing. Update to version 0.109.1 or later to fix it.
Is CVE-2024-24762 on the CISA KEV catalog?
Check the live CISA KEV catalog at packagefix.dev — the catalog updates daily and PackageFix always reflects the current status.
How do I fix CVE-2024-24762 in FastAPI?
Update FastAPI to version 0.109.1 or later in your requirements.txt. Run pip install -r requirements.txt after updating.
Does CVE-2024-24762 affect all versions of FastAPI?
Check the OSV advisory for the exact affected version range. PackageFix shows the minimum safe version for your installed version.