Skip to content
CVE / MITRECVE RecentΒ·Β·1 min read

CVE-2026-59860 - Kiota: XML Doc-Comment Newline Breakout Code Injection

CVE ID :CVE-2026-59860 Published : July 16, 2026, 3:16 p. m. | 1 hour ago Description :Kiota is an OpenAPI based HTTP Client code generator.

Prior to 1. 32. 3, Kiota is affected by a code-generation injection vulnerability in the C# XML documentation-comment sink (the description, externalDocs label, and externalDocs link fields emitted as /// … comments).

Originally reported by CVE Recent
0 comments

0 comments

Posting as StoicCaracal804
0/1000

No comments yet. Be the first to start the discussion.