{"data":{"id":"f8c106c8-6318-4ec9-80c4-0a778aca09a0","title":"GHSA-6gw6-rv2g-25mg: Kiota: Unsafe oauth_card_path references in Kiota-generated API plugin manifests","summary":"Microsoft.OpenApi.Kiota and Microsoft.OpenApi.Kiota.Builder, from version 1.25.1 through 1.34.1 (including the 1.29.1 security-backport release), copy x-ai-capabilities.response_semantics.oauth_card_path into generated API plugin manifests without checking that it is a safe package-relative file reference. An attacker who controls the OpenAPI description can supply parent-directory traversal, rooted paths, or absolute URIs, and a consuming host that resolves the reference may cross the package boundary or use an unintended authentication card. Kiota itself does not read files or execute code during generation.","solution":"Upgrade to Kiota 1.35.0 or later and regenerate affected plugin manifests. Kiota 1.35.0 applies the existing safe-file-reference validator to oauth_card_path, drops unsafe references, and emits a warning; valid relative card paths remain supported. Workaround: generate plugins only from trusted, integrity-protected OpenAPI descriptions, and before packaging or deployment review generated manifests and remove any oauth_card_path that is not a safe relative reference confined to the plugin package.","labels":["security"],"sourceUrl":"https://github.com/advisories/GHSA-6gw6-rv2g-25mg","publishedAt":"2026-10-06T15:36:13.000Z","cveId":"CVE-2026-105795","cweIds":null,"cvssScore":null,"cvssSeverity":"low","severity":"low","attackType":["other"],"issueType":"vulnerability","affectedPackages":["Microsoft.OpenApi.Kiota.Builder@>= 1.25.1, < 1.35.0 (fixed: 1.35.0)","Microsoft.OpenApi.Kiota@>= 1.25.1, < 1.35.0 (fixed: 1.35.0)"],"affectedPackageNames":["microsoft-openapi-kiota-builder","microsoft-openapi-kiota"],"affectedVendors":["Microsoft"],"affectedVendorsRaw":["Kiota","Microsoft.OpenApi.Kiota","Microsoft.OpenApi.Kiota.Builder","API plugin manifests"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":null,"headlinePromptVersion":null,"cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":"unknown","epssScore":0.01214,"epssCheckedAt":"2026-10-10T02:59:00.848Z","kevDateAdded":null,"advisoryAliases":["GHSA-6gw6-rv2g-25mg"],"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":true,"disclosureDate":"2026-10-06T15:36:13.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["integrity","confidentiality"],"aiComponentTargeted":"plugin","llmSpecific":false,"classifierConfidence":0.8,"researchCategory":null,"atlasIds":["AML.T0010"]}}