CVE-2018-25031
MEDIUM NUCLEISwagger UI <4.1.2 - CSRF
Title source: llmDescription
Swagger UI 4.1.2 and earlier could allow a remote attacker to conduct spoofing attacks. By persuading a victim to open a crafted URL, an attacker could exploit this vulnerability to display remote OpenAPI definitions. Note: This was originally claimed to be resolved in 4.1.3. However, third parties have indicated this is not resolved in 4.1.3 and even occurs in that version and possibly others.
Exploits (16)
nomisec
SCANNER
2 stars
by rafaelcintralopes · poc
https://github.com/rafaelcintralopes/SwaggerUI-CVE-2018-25031
Nuclei Templates (1)
Swagger UI < 3.38.0 - Cross-Site Scripting
MEDIUMVERIFIEDby DhiyaneshDK
Shodan:
http.component:"Swagger" || http.component:"swagger" || http.favicon.hash:"-1180440057"
FOFA:
icon_hash="-1180440057"
References (4)
Scores
CVSS v3
4.3
EPSS
0.8042
EPSS Percentile
99.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Details
CWE
CWE-918
CWE-20
CWE-922
Status
published
Products (3)
npm/swagger-ui
0 - 4.1.3npm
org.webjars/swagger-ui
0 - 4.1.3Maven
smartbear/swagger_ui
< 4.1.3
Published
Mar 11, 2022
Tracked Since
Feb 18, 2026