swagger-api / swagger-core

Examples and server integrations for generating the Swagger API Specification, which enables easy access to your REST API
http://swagger.io
Apache License 2.0
7.36k stars 2.17k forks source link

MavenGate (CVE) #4617

Open diyfr opened 4 months ago

diyfr commented 4 months ago

XFrog triggers an alert on packages io.swagger.core :

https://blog.oversecured.com/Introducing-MavenGate-a-supply-chain-attack-method-for-Java-and-Android-applications
https://www.sonatype.com/sonatypes-ongoing-commitment-to-maven-central