springdoc-openapi-starter-webflux-scalar is vulnerable to Race Condition
47
Medium Risk
The Scalar starters register forwarded-header handling application-wide, so the whole application trusts client supplied X-Forwarded-* headers and becomes susceptible to host-header poisoning of links, redirects, and generated URLs. The Scalar controller also writes per request state, such as the api-docs URL, into a shared singleton bean, so under concurrency one caller's page can be rendered with another caller's configuration. The patch stops registering global forwarded-header handling and renders Scalar from request-local state.
You are affected if you are using a version that falls within the vulnerable range and you use a Scalar starter behind a proxy or serving concurrent requests.
springdoc-openapi-starter-webflux-scalar is vulnerable to Race Condition in versions 2.8.13 - 2.9.0 and 3.0.0 - 3.1.0.
Upgrade the springdoc-openapi-starter-webflux-scalar and/or the org.springdoc:springdoc-openapi-starter-webmvc-scalar library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.