VulnSea

swagger-typescript-api has 6 CVEs on record. Disclosure cadence is accelerating: 6 in the last 90 days against 0 in the 90 before. The busiest recent month was July 2026 with 6. The median CVSS is 8.3 (high). None have a confirmed exploitation report. The dominant weakness classes are CWE-1336 (4) and CWE-74 (4).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
8.3
Publish → KEV
Last 90 days
6 prev 0

Products

  • swagger-typescript-api 6
Follow swagger-typescript-api:RSS feedSave a search →Embed badge ↗
6
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

swagger-typescript-api vulnerabilities

CVEs affecting swagger-typescript-api, newest first. Open any entry for full detail, references, and exploit status.

6 CVEsRSS

CVE-2026-54660High· 7.4
1mo ago

swagger-typescript-api vulnerable to authorization-token exfiltration via spec `$ref`

swagger-typescript-api vulnerable to authorization-token exfiltration via spec `$ref`

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.24%via GHSA
CVE-2026-54662High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in fetch http-client template

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in fetch http-client template

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.27%via GHSA
CVE-2026-54663Medium· 6.1
1mo ago

swagger-typescript-api vulnerable to Server-Side Request Forgery via spec `$ref`

swagger-typescript-api vulnerable to Server-Side Request Forgery via spec `$ref`

Sunlitswagger-typescript-api · swagger-typescript-apiEPSS 0.18%via GHSA
CVE-2026-54661High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in axios http-client template

swagger-typescript-api vulnerable to code injection via unescaped `servers[0].url` in axios http-client template

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.27%via GHSA
CVE-2026-54664High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped enum string values

swagger-typescript-api vulnerable to code injection via unescaped enum string values

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.27%via GHSA
CVE-2026-54666High· 8.3
1mo ago

swagger-typescript-api vulnerable to code injection via unescaped OpenAPI path strings in generated method bodies

swagger-typescript-api vulnerable to code injection via unescaped OpenAPI path strings in generated method bodies

Twilightswagger-typescript-api · swagger-typescript-apiEPSS 0.29%via GHSA
swagger-typescript-api vulnerabilities (CVEs) · VulnSea