Medium severity6.1NVD Advisory· Published Sep 25, 2025· Updated Jun 17, 2026
CVE-2025-29156
CVE-2025-29156
Description
Cross Site Scripting vulnerability in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via a crafted script to the /api/v3/pet
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:smartbear:swagger_petstore:1.0.7:*:*:*:*:*:*:*
- petstore/petstoredescription
- Range: =1.0.7
Patches
Vulnerability mechanics
References
3- gist.github.com/HouqiyuA/9d2c3f0ba075d01631aff879546e419cnvdThird Party Advisory
- github.com/swagger-api/swagger-petstore/blob/master/src/main/resources/openapi.yamlnvdProduct
- www.google.com/urlnvdProduct
News mentions
0No linked articles in our index yet.