← Back to CVE List
Vulnerability Intelligence Report
Kiota: Path/URL injection into generated Copilot plugin manifest via x-ai-* extensions

CVE-2026-59864

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, `kiota plugin add` and `kiota plugin generate` (with `-t APIPlugin`) emitted attacker-controlled static_template.file values from x-ai-adaptive-card and x-ai-capabilities into generated Microsoft 365 Copilot and Teams plugin manifests without path validation, allowing ../, absolute, rooted, UNC, Windows drive, or URI paths in response_semantics.static_template.file to cause path traversal or out-of-package file inclusion when the generated plugin was deployed. This issue is fixed in version 1.29.1 and 1.32.5.

Path Traversal No Active Exploit Signals
CVSS Base Score
9.3
CRITICAL
EPSS Probability:1.27%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Weaknesses (CWE)

CWE-22 ↗CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-829 ↗CWE-829: Inclusion of Functionality from Untrusted Control Sphere

Affected Products & Versions

Vendor Product Affected Versions
microsoft kiota >= 1.30.0, < 1.31.1 (affected), < 1.29.1 (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.275%
Vulnerability Class
Path Traversal

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityGitHub, Inc. · Vendor · USA
Reserved2026-07-07T15:41:53
Published2026-07-16T14:45:36
Last Updated2026-08-17T15:02:52

LINK COPIED TO CLIPBOARD