Vulnerability Intelligence Report
Kiota: Path/URL injection into generated Copilot plugin manifest via x-ai-* extensions
CVE-2026-59864
Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, `kiota plugin add` and `kiota plugin generate` (with `-t APIPlugin`) emitted attacker-controlled static_template.file values from x-ai-adaptive-card and x-ai-capabilities into generated Microsoft 365 Copilot and Teams plugin manifests without path validation, allowing ../, absolute, rooted, UNC, Windows drive, or URI paths in response_semantics.static_template.file to cause path traversal or out-of-package file inclusion when the generated plugin was deployed. This issue is fixed in version 1.29.1 and 1.32.5.
Path Traversal
No Active Exploit Signals
CVSS Base Score
9.3
CRITICAL
EPSS Probability:1.27%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-22 ↗CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-829 ↗CWE-829: Inclusion of Functionality from Untrusted Control Sphere
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| microsoft | kiota | >= 1.30.0, < 1.31.1 (affected), < 1.29.1 (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | GitHub, Inc. · Vendor · USA |
| Reserved | 2026-07-07T15:41:53 |
| Published | 2026-07-16T14:45:36 |
| Last Updated | 2026-08-17T15:02:52 |
Community Chatter & Buzz