CVE-2018-25031
Last modified
CVE-2018-25031 is a medium-severity vulnerability rated 4.3/10 on the CVSS scale. Swagger UI 4.1.2 and earlier could allow a remote attacker to conduct spoofing attacks. By persuading a victim to open a crafted URL, an attacker could exploit this vulnerability to display remote OpenAPI definitions. EPSS estimates a 42.33% chance of exploitation in the next 30 days.
Description
Swagger UI 4.1.2 and earlier could allow a remote attacker to conduct spoofing attacks. By persuading a victim to open a crafted URL, an attacker could exploit this vulnerability to display remote OpenAPI definitions. Note: This was originally claimed to be resolved in 4.1.3. However, third parties have indicated this is not resolved in 4.1.3 and even occurs in that version and possibly others.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Smartbear | Swagger Ui | < 4.1.3 |
References
- https://github.com/swagger-api/swagger-ui/issues/4872Issue Tracking, Patch, Third Party Advisory
- https://github.com/swagger-api/swagger-ui/releases/tag/v4.1.3Release Notes, Third Party Advisory
- https://security.netapp.com/advisory/ntap-20220407-0004/Third Party Advisory
- https://security.snyk.io/vuln/SNYK-JS-SWAGGERUI-2314885Patch, Third Party Advisory
- https://github.com/swagger-api/swagger-ui/issues/4872Issue Tracking, Patch, Third Party Advisory
- https://github.com/swagger-api/swagger-ui/releases/tag/v4.1.3Release Notes, Third Party Advisory
- https://security.netapp.com/advisory/ntap-20220407-0004/Third Party Advisory
- https://security.snyk.io/vuln/SNYK-JS-SWAGGERUI-2314885Patch, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-25031?
How severe is CVE-2018-25031?
How do I fix CVE-2018-25031?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-25026An issue was discovered in the actix-web crate before 0.7.15…9.8
- CVE-2018-25027An issue was discovered in the libpulse-binding crate before…7.5
- CVE-2018-25028An issue was discovered in the libpulse-binding crate before…7.5
- CVE-2018-25029The Z-Wave specification requires that S2 security can be do…8.1
- CVE-2018-2503By default, the SAP NetWeaver AS Java keystore service does …7.4
- CVE-2018-25030A vulnerability classified as problematic has been found in …2.5
- CVE-2018-25032zlib before 1.2.12 allows memory corruption when deflating (…7.5
- CVE-2018-25033ADMesh through 0.98.4 has a heap-based buffer over-read in s…8.1
- CVE-2018-25034A vulnerability, which was classified as problematic, has be…5.4
- CVE-2018-25035A vulnerability, which was classified as problematic, was fo…5.4
- CVE-2018-25036A vulnerability has been found in Thomson TCW710 ST5D.10.05 …5.4
- CVE-2018-25037A vulnerability was found in Thomson TCW710 ST5D.10.05 and c…5.4
Are you affected by CVE-2018-25031?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
