QID 570064
QID 570064: Insecure Authentication Schemes
Security schemes should be defined in swagger file to provide additional level of security. The security schemes defined should be recognized as valid by the specification. Analysis of swagger file revealed the usage of schemes (like OAUTH V1, NTLM) that are considered to be insecure or not supported.
Swagger file is not compliant to specification. It will result in an error.
Solution
Please review valid authentication schemes and change to an authentication that is secure and supported by swagger specification.
Vendor References
CVEs related to QID 570064
Software Advisories
| Advisory ID | Software | Component | Link |
|---|