Advisory Database
  • Advisories
  • Dependency Scanning
  1. maven
  2. ›
  3. org.openapitools/openapi-generator
  4. ›
  5. CVE-2021-21430

CVE-2021-21430: Improper Privilege Management

May 10, 2021 (updated October 24, 2022)

OpenAPI Generator allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. okhttp-gson (default library)), scala-finch.

References

  • nvd.nist.gov/vuln/detail/CVE-2021-21430

Code Behaviors & Features

Detect and mitigate CVE-2021-21430 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions before 5.1.1

Fixed versions

  • 5.1.1

Solution

Upgrade to version 5.1.1 or above.

Impact 5.5 MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Learn more about CVSS

Weakness

  • CWE-668: Exposure of Resource to Wrong Sphere

Source file

maven/org.openapitools/openapi-generator/CVE-2021-21430.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Wed, 14 May 2025 12:15:18 +0000.