THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-41134 (HIGH 7.8) — Kiota is an OpenAPI based HTTP Client code generator. Versions prior to 1.29.1 and 1.31.1 are affected by a code-generation literal injection vulnerability in multiple writer sinks (for example: serialization/deserialization keys, path/query parameter mappings, URL template metad

[NVD] CVE-2026-41134 (HIGH 7.8) — Kiota is an OpenAPI based HTTP Client code generator. Versions prior to 1.29.1 and 1.31.1 are affected by a code-generation literal injection vulnerability in multiple writer sinks (for example: serialization/deserialization keys, path/query parameter mappings, URL template metad

lownvdPublished 2026-04-22

CVE-2026-41134 CVSS: 7.8 HIGH Published: 2026-04-22T21:17:09.027

Kiota is an OpenAPI based HTTP Client code generator. Versions prior to 1.29.1 and 1.31.1 are affected by a code-generation literal injection vulnerability in multiple writer sinks (for example: serialization/deserialization keys, path/query parameter mappings, URL template metadata, enum/property metadata, and default value emissio

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-41134