Http Swagger Project
http-swagger_project
2 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Http Swagger Project 1Http Swagger Jun 16, 2025 Feb 29, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 http-swagger before 1.2.6 allows XSS via PUT requests, because a file that has been uploaded (via httpSwagger.WrapHandler and *webdav.memFile) can subsequently be accessed via a GET request. NOTE: this is independently f...Show more |
1Http Swagger Project 1Http Swagger Nov 21, 2024 Apr 18, 2022 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 http-swagger is an open source wrapper to automatically generate RESTful API documentation with Swagger 2.0. In versions of http-swagger prior to 1.2.6 an attacker may perform a denial of service attack consisting of mem...Show more |