Embed Swagger Project maintains a focused API documentation and integration tool with a narrow product footprint centered on its embed_swagger offering. The vendor's disclosed vulnerabilities cluster around cross-site scripting weaknesses in web page generation, reflecting the input-handling demands of a documentation-rendering component. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Embed Swagger Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-0381MEDIUM The Embed Swagger WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to insufficient escaping/sanitization and validation via the url parameter found in the ~/swa | Feb 4, 2022 | 6.1 | 33 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Embed Swagger Project.
Media articles that mention a CVE ID that affects a product developed by Embed Swagger Project — matched by CVE ID, not by vendor name.