Skip to main content

Vendor/product archive

openapi-generator / openapi_generator CVEs

Beta · best-effort

5 CVEs tagged to openapi-generator / openapi_generator2 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2023-27162

Published Mar 31, 2023

openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen/clients/{language}. This vulnerability allows attackers to…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-21430

Published May 10, 2021

OpenAPI Generator allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. Using `File.create…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-21428

Published May 10, 2021

Openapi generator is a java tool which allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spe…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-21429

Published Apr 27, 2021

OpenAPI Generator allows generation of API client libraries, server stubs, documentation and configuration automatically given an OpenAPI Spec. Using `File.createTempFile` in JDK…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-11405

Published Apr 22, 2019

OpenAPI Tools OpenAPI Generator before 4.0.0-20190419.052012-560 uses http:// URLs in various build.gradle, build.gradle.mustache, and build.sbt files, which may have caused insec…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1