CVE-2026-59861
- EPSS 1.47%
- Veröffentlicht 16.07.2026 14:36:32
- Zuletzt bearbeitet 17.08.2026 15:16:56
Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.0, Kiota's Ruby generator embedded OpenAPI default fields, property names, and other schema-derived strings through CodeMethodWriter.cs and SanitizeForQuotedLiteral() in W...
CVE-2026-59860
- EPSS 1.02%
- Veröffentlicht 16.07.2026 14:34:24
- Zuletzt bearbeitet 17.08.2026 15:16:56
Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.3, Kiota is affected by a code-generation injection vulnerability in the C# XML documentation-comment sink (the description, externalDocs label, and externalDocs link fiel...
CVE-2026-41134
- EPSS 0.42%
- Veröffentlicht 22.04.2026 20:20:57
- Zuletzt bearbeitet 17.08.2026 15:16:55
Kiota is an OpenAPI based HTTP Client code generator. Versions prior to 1.29.1 and 1.31.1 are affected by a code-generation literal injection vulnerability in multiple writer sinks (for example: serialization/deserialization keys, path/query paramete...