orval before 8.29.0 Code Injection via unescaped OpenAPI media-type
28Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackcvss 9.3epss 0.6%
probabilidade de exploração
0.6%top 55% das CVEs
exploração observada
nãonenhuma fonte reporta
orval before 8.29.0 fails to escape OpenAPI media-type keys when emitting them into single-quoted Content-Type string literals in generated code. Attackers can inject JavaScript through crafted media-type keys in OpenAPI specifications that executes when generated fetch operations or mock resolvers are invoked.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Produtos afetados
orval-labs · orvalReferências
https://github.com/orval-labs/orvalhttps://github.com/orval-labs/orval/blob/v8.28.1/packages/fetch/src/index.ts#L584https://github.com/orval-labs/orval/commit/43af282d62dca0ef3140023741fb768f6a718adbhttps://github.com/orval-labs/orval/commit/a2d4af59f3b167dc8a7a65d15f51cdb89ebe2fe5https://github.com/orval-labs/orval/pull/4007https://github.com/orval-labs/orval/security/advisories/GHSA-4q3x-rqfw-3x8phttps://github.com/orval-labs/orval/security/advisories/GHSA-rcpr-mq4m-jx9jhttps://www.vulncheck.com/advisories/orval-before-8.29.0-code-injection-via-unescaped-openapi-media-type