Forum Discussion

h3xspirit's avatar
h3xspirit
New Contributor
7 years ago

What are the exact affected and fixed SwaggerUI versions for CVE-2016-7559 & CVE-2016-7918 (CVSS10)?

Hello,

 

What are the exact affected and fixed SwaggerUI versions for CVE-2016-7559 & CVE-2016-7918 (CVSS10)?

 

Thank you,

h3xspirit

2 Replies

  • h3xspirit's avatar
    h3xspirit
    New Contributor

    Not much information has been publicly posted. However, the two aforementioned CVEs have been created for two (2) critical (CVSS 10) SwaggerUI vulnerabilities that were discovered by https://pl.linkedin.com/in/arturczyz who cannot be reached.

     

    Since we received these new vulnerability notifications, we would like to know just only the exact affected versions to make sure that we are secure. Otherwise what is the point for posting that two critical exploitable vulnerabilities have been identified for Swagger-UI with no details whatsoever. 

     

    Thank you,

    h3xspirit