CVE-2018-25031

MEDIUM NUCLEI

Swagger UI <4.1.2 - CSRF

Title source: llm

Description

Swagger UI 4.1.2 and earlier could allow a remote attacker to conduct spoofing attacks. By persuading a victim to open a crafted URL, an attacker could exploit this vulnerability to display remote OpenAPI definitions. Note: This was originally claimed to be resolved in 4.1.3. However, third parties have indicated this is not resolved in 4.1.3 and even occurs in that version and possibly others.

Exploits (16)

nomisec WORKING POC 3 stars
by mathis2001 · poc
https://github.com/mathis2001/CVE-2018-25031
nomisec WORKING POC 2 stars
by afine-com · poc
https://github.com/afine-com/CVE-2018-25031
nomisec SCANNER 2 stars
by rafaelcintralopes · poc
https://github.com/rafaelcintralopes/SwaggerUI-CVE-2018-25031
nomisec WORKING POC
by rasinfosec · poc
https://github.com/rasinfosec/CVE-2018-25031
nomisec SUSPICIOUS
by labeebSabbah · poc
https://github.com/labeebSabbah/CVE-2018-25031
nomisec WRITEUP
by RelicHunt3r · poc
https://github.com/RelicHunt3r/swagger-ui
nomisec WORKING POC
by h4ckt0m · poc
https://github.com/h4ckt0m/CVE-2018-25031-test
nomisec WORKING POC
by nigartest · poc
https://github.com/nigartest/CVE-2018-25031
nomisec STUB
by KonEch0 · poc
https://github.com/KonEch0/CVE-2018-25031-SG
nomisec STUB
by natpakun · poc
https://github.com/natpakun/SSRF-CVE-2018-25031-
nomisec STUB
by h2oa · poc
https://github.com/h2oa/CVE-2018-25031
nomisec WORKING POC
by geozin · poc
https://github.com/geozin/POC-CVE-2018-25031
nomisec WORKING POC
by johnlaurance · poc
https://github.com/johnlaurance/CVE-2018-25031-test2
nomisec STUB
by hev0x · poc
https://github.com/hev0x/CVE-2018-25031-PoC
nomisec WORKING POC
by LUCASRENAA · poc
https://github.com/LUCASRENAA/CVE-2018-25031

Nuclei Templates (1)

Swagger UI < 3.38.0 - Cross-Site Scripting
MEDIUMVERIFIEDby DhiyaneshDK
Shodan: http.component:"Swagger" || http.component:"swagger" || http.favicon.hash:"-1180440057"
FOFA: icon_hash="-1180440057"

Scores

CVSS v3 4.3
EPSS 0.8042
EPSS Percentile 99.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Details

CWE
CWE-918 CWE-20 CWE-922
Status published
Products (3)
npm/swagger-ui 0 - 4.1.3npm
org.webjars/swagger-ui 0 - 4.1.3Maven
smartbear/swagger_ui < 4.1.3
Published Mar 11, 2022
Tracked Since Feb 18, 2026