orval before 8.29.0 Code Injection via unescaped OpenAPI media-type
28Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 9.3epss 0.6%
probabilidad de explotación
0.6%top 55% de las CVE
explotación observada
noninguna fuente lo reporta
orval before 8.29.0 fails to escape OpenAPI media-type keys when emitting them into single-quoted Content-Type string literals in generated code. Attackers can inject JavaScript through crafted media-type keys in OpenAPI specifications that executes when generated fetch operations or mock resolvers are invoked.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Productos afectados
orval-labs · orvalReferencias
https://github.com/orval-labs/orvalhttps://github.com/orval-labs/orval/blob/v8.28.1/packages/fetch/src/index.ts#L584https://github.com/orval-labs/orval/commit/43af282d62dca0ef3140023741fb768f6a718adbhttps://github.com/orval-labs/orval/commit/a2d4af59f3b167dc8a7a65d15f51cdb89ebe2fe5https://github.com/orval-labs/orval/pull/4007https://github.com/orval-labs/orval/security/advisories/GHSA-4q3x-rqfw-3x8phttps://github.com/orval-labs/orval/security/advisories/GHSA-rcpr-mq4m-jx9jhttps://www.vulncheck.com/advisories/orval-before-8.29.0-code-injection-via-unescaped-openapi-media-type