Vulnerability  ·  2026-10-08

Microsoft Kiota copies unvalidated OAuth card path from OpenAPI into generated AI plugin manifest (CVE-2026-105795)

VulnerabilityLow impactGlobalCVE-2026-105795
NVD published CVE-2026-105795 (CVSS 3.1) on 2026-10-06 for Kiota copying an unvalidated OAuth card path from attacker-controlled OpenAPI into a generated AI/plugin manifest; low severity, code-generation supply-chain flavor.
Kiota generates client code and now AI plugin manifests from OpenAPI specs; a malicious spec yields generated code that pulls an attacker-controlled OAuth card — a subtle low-severity supply-chain wrinkle in AI-client code generation.
Kiota copies x-ai-capabilities.response_semantics.oauth_card_path from an untrusted OpenAPI description into a generated AI plugin manifest without validating the value is a safe package reference — so a poisoned spec yields a manifest pointing to an attacker-controlled card package.
Microsoft Kiota 1.25.1 – 1.35.0
Upgrade Kiota to 1.35.0+ (fix commit fc0f219b...); validate OpenAPI sources before generation.
NVD CVE-2026-105795Fix commit
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →