VulnSea

swagger-typescript-api vulnerabilities

CVEs whose affected-version data names the swagger-typescript-api package (npm). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

6 CVEsRSS

CVE-2026-54660High· 7.4
1mo ago

swagger-typescript-api vulnerable to authorization-token exfiltration via spec `$ref`

swagger-typescript-api vulnerable to authorization-token exfiltration via spec `$ref`

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.24%via GHSA
CVE-2026-54662High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in fetch http-client template

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in fetch http-client template

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.27%via GHSA
CVE-2026-54663Medium· 6.1
1mo ago

swagger-typescript-api vulnerable to Server-Side Request Forgery via spec `$ref`

swagger-typescript-api vulnerable to Server-Side Request Forgery via spec `$ref`

Sunlitswagger-typescript-api · swagger-typescript-apiEPSS 0.18%via GHSA
CVE-2026-54661High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in axios http-client template

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in axios http-client template

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.27%via GHSA
CVE-2026-54664High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped enum string values

swagger-typescript-api vulnerable to code injection via unescaped enum string values

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.27%via GHSA
CVE-2026-54666High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped OpenAPI path strings in generated method bodies

swagger-typescript-api vulnerable to code injection via unescaped OpenAPI path strings in generated method bodies

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.29%via GHSA
swagger-typescript-api vulnerabilities (CVEs) · VulnSea