Vendorsopenapi-generatoropenapi_generatorany version
Vulnerabilities

openapi-generator Openapi Generator any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2021-21428
Creation of Temporary File in Directory with Insecure Permissions in the OpenAPI-Generator online generator
Published 2021-05-10 · Modified
9.3EPSS 0.004
CVE-2023-27162
openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen/clients/{language}. This vulnerability allows attackers to access network resources and sensitive information via a crafted API request.
Published 2023-03-31 · Modified
9.1EPSS 0.009
CVE-2019-11405
OpenAPI Tools OpenAPI Generator before 4.0.0-20190419.052012-560 uses http:// URLs in various build.gradle, build.gradle.mustache, and build.sbt files, which may have caused insecurely resolved dependencies.
Published 2019-04-21 · Modified
8.1EPSS 0.012
CVE-2021-21430
Creation of Temporary File in Directory with Insecure Permissions in auto-generated Java, Scala code
Published 2021-05-10 · Modified
6.2EPSS 0.004
CVE-2021-21429
Creation of Temporary File in Directory with Insecure Permissions in the OpenAPI Generator Maven plugin
Published 2021-04-27 · Modified
4.0EPSS 0.003