Vulnerabilities
Vulnerable Software
Cross Site Scripting vulnerability in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via a crafted script to the /api/v3/pet
CVSS Score
6.1
EPSS Score
0.001
Published
2025-09-25
An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a non-existent endpoint/cart, the server returns a 404-error page exposing sensitive information including the Servlet name (default) and server version
CVSS Score
6.5
EPSS Score
0.002
Published
2025-09-25
An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via the DELETE endpoint
CVSS Score
6.5
EPSS Score
0.001
Published
2025-09-25


Contact Us

Shodan ® - All rights reserved