io.swagger:swagger-codegen-cli@2.1.6 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the io.swagger:swagger-codegen-cli package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • C
Arbitrary Code Execution

io.swagger:swagger-codegen is a simple yet powerful representation of your RESTful API. Affected versions of this package are vulnerable to Arbitrary Code Execution via parameter injection. By leveraging this vulnerability, an attacker can inject arbitrary execution code embedded with a client or server generated automatically to interact with the definition of service.

[,2.2.0)