Vulnerabilities
Products Security index
Vulnerabilities
CVE-2023-27162
openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen/clients/{language}. This vulnerability allows attackers to access network resources and sensitive information via a crafted API request.
CVE-2021-21430
Creation of Temporary File in Directory with Insecure Permissions in auto-generated Java, Scala code
CVE-2021-21428
Creation of Temporary File in Directory with Insecure Permissions in the OpenAPI-Generator online generator
CVE-2021-21429
Creation of Temporary File in Directory with Insecure Permissions in the OpenAPI Generator Maven plugin
CVE-2019-11405
OpenAPI Tools OpenAPI Generator before 4.0.0-20190419.052012-560 uses http:// URLs in various build.gradle, build.gradle.mustache, and build.sbt files, which may have caused insecurely resolved dependencies.
