Skip to content
CVE / MITRECVE RecentΒ·Β·1 min read

CVE-2026-59861 - Kiota: Code Generation Literal Injection in Kiota Ruby Generator

CVE ID :CVE-2026-59861 Published : July 16, 2026, 3:16 p. m. | 1 hour ago Description :Kiota is an OpenAPI based HTTP Client code generator.

Prior to 1. 32. 0, Kiota's Ruby generator embedded OpenAPI default fields, property names, and other schema-derived strings through CodeMethodWriter.

cs and SanitizeForQuotedLiteral() in Writers/StringExtensions.

Originally reported by CVE Recent
0 comments

0 comments

Posting as CuriousRaven913
0/1000

No comments yet. Be the first to start the discussion.