GHSA-c427-hjc3-wrfw

Suggest an improvement
Source
https://github.com/advisories/GHSA-c427-hjc3-wrfw
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2019/10/GHSA-c427-hjc3-wrfw/GHSA-c427-hjc3-wrfw.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-c427-hjc3-wrfw
Aliases
Published
2019-10-15T19:27:05Z
Modified
2024-08-26T16:00:45.091934Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • 9.3 (Critical) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N CVSS Calculator
Summary
Cross-site scripting in Swagger-UI
Details

A Cascading Style Sheets (CSS) injection vulnerability in Swagger UI before 3.23.11 allows attackers to use the Relative Path Overwrite (RPO) technique to perform CSS-based input field value exfiltration, such as exfiltration of a CSRF token value. In other words, this product intentionally allows the embedding of untrusted JSON data from remote servers, but it was not previously known that <style>@import within the JSON data was a functional attack method.

Database specific
{
    "nvd_published_at": "2019-10-10T22:15:00Z",
    "cwe_ids": [
        "CWE-352",
        "CWE-79"
    ],
    "severity": "CRITICAL",
    "github_reviewed": true,
    "github_reviewed_at": "2019-10-14T20:13:46Z"
}
References

Affected packages

npm / swagger-ui

Package

Affected ranges

Type
SEMVER
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.23.11

Maven / org.webjars:swagger-ui

Package

Name
org.webjars:swagger-ui
View open source insights on deps.dev
Purl
pkg:maven/org.webjars/swagger-ui

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.23.11

Affected versions

2.*

2.0.12
2.0.14
2.0.14-1
2.0.17
2.0.18
2.0.21
2.0.22
2.0.24
2.1.0-alpha.6
2.1.0-M1
2.1.0
2.1.1
2.1.2
2.1.3
2.1.4
2.1.5
2.1.8-M1
2.2.0
2.2.2
2.2.5
2.2.6
2.2.8
2.2.10
2.2.10-1

3.*

3.0.2
3.0.3
3.0.4
3.0.5
3.0.7
3.0.8
3.0.10
3.0.14
3.0.17
3.0.18
3.0.19
3.0.20
3.0.21
3.1.2
3.1.4
3.1.5
3.1.6
3.1.7
3.2.0
3.2.2
3.4.4
3.5.0
3.6.1
3.7.0
3.8.0
3.9.0
3.9.1
3.9.2
3.9.3
3.10.0
3.11.0
3.12.0
3.12.1
3.13.0
3.13.1
3.13.2
3.13.3
3.13.4
3.13.6
3.14.0
3.14.2
3.17.0
3.17.1
3.17.2
3.17.3
3.17.4
3.17.6
3.18.1
3.18.2
3.19.0
3.19.4
3.19.5
3.20.0
3.20.1
3.20.2
3.20.3
3.20.5
3.20.8
3.20.9
3.22.0
3.22.1
3.22.2
3.23.0
3.23.2
3.23.4
3.23.5
3.23.8

Maven / org.webjars.npm:swagger-ui

Package

Name
org.webjars.npm:swagger-ui
View open source insights on deps.dev
Purl
pkg:maven/org.webjars.npm/swagger-ui

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.23.11

Affected versions

2.*

2.1.3
2.1.4
2.1.5
2.2.0
2.2.8
2.2.10

3.*

3.0.2
3.0.6
3.0.12
3.0.14
3.0.17
3.0.18
3.0.20
3.1.4
3.1.6
3.1.7
3.3.1
3.4.1
3.6.1
3.9.3
3.10.0
3.12.0
3.17.0
3.17.6
3.18.1
3.19.0
3.19.1
3.19.4
3.20.6
3.20.7
3.22.0
3.22.1
3.22.2
3.22.3
3.23.1
3.23.2
3.23.3
3.23.4
3.23.5
3.23.10

Maven / io.springfox:springfox-swagger-ui

Package

Name
io.springfox:springfox-swagger-ui
View open source insights on deps.dev
Purl
pkg:maven/io.springfox/springfox-swagger-ui

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.10.0

Affected versions

2.*

2.0.1
2.0.2
2.0.3
2.1.0
2.1.1
2.1.2
2.2.2
2.3.0
2.3.1
2.4.0
2.5.0
2.6.0
2.6.1
2.7.0
2.8.0
2.9.1
2.9.2