swagger-typescript-api
npm6 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting swagger-typescript-apipage 1 of 1
- CVE-2026-54660HIGHCVSS 7.4EG 7.4✓ Fixed in 13.12.22026-07-29
swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resolved-swagger-schema.ts getRemoteRequestHeaders forwards --authorizationToken to every URL fetched by fetchRemoteSchemaDo…
- CVE-2026-54661HIGHCVSS 8.3EG 8.3✓ Fixed in 13.12.22026-07-29
swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, templates/base/http-clients/axios-http-client.ejs interpolates servers[0].url from src/code-gen-process.ts into the HttpClient…
- CVE-2026-54662HIGHCVSS 8.3EG 8.3✓ Fixed in 13.12.22026-07-29
swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/code-gen-process.ts createApiConfig copies servers[0].url into apiConfig.baseUrl, and templates/base/http-clients/fetch-http…
- CVE-2026-54663MEDIUMCVSS 6.1EG 6.1✓ Fixed in 13.12.22026-07-29
swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resolved-swagger-schema.ts warmUpRemoteSchemasCache resolves external $ref URLs and fetchRemoteSchemaDocument uses isHttpUrl…
- CVE-2026-54664HIGHCVSS 8.3EG 8.3✓ Fixed in 13.12.22026-07-29
swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, src/schema-parser/base-schema-parsers/enum.ts passes components.schemas.*.enum[i] values to Ts.StringValue in src/configuratio…
- CVE-2026-54666HIGHCVSS 8.3EG 8.3✓ Fixed in 13.12.22026-07-29
swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, src/schema-routes/schema-routes.ts passes OpenAPI path keys through parseRouteName to templates/default/procedure-call.ejs and…
Check whether swagger-typescript-api is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for swagger-typescript-api CVEs against the assets you own.
Start Free Scan →