VYPR

Maven package

org.webjars.npm/swagger-ui

pkg:maven/org.webjars.npm/swagger-ui

Vulnerabilities (1)

  • CVE-2019-17495Oct 10, 2019
    affected < 3.23.11fixed 3.23.11

    A Cascading Style Sheets (CSS) injection vulnerability in Swagger UI before 3.23.11 allows attackers to use the Relative Path Overwrite (RPO) technique to perform CSS-based input field value exfiltration, such as exfiltration of a CSRF token value. In other words, this product in