Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

2 advisories

Loading
Kiota: Unsafe oauth_card_path references in Kiota-generated API plugin manifests Low
CVE-2026-105795 was published for Microsoft.OpenApi.Kiota (NuGet) Oct 6, 2026
gavinbarron Credited to gavinbarron and adrian05-ms adrian05-ms adrian05-ms
@microsoft/kiota-http-fetchlibrary: Bearer token and Cookie leak across origin on redirect due to case-mismatched scrub in fetchRequestAdapter Moderate
CVE-2026-49336 was published for @microsoft/kiota-http-fetchlibrary (npm) Jun 26, 2026
tonghuaroot Credited to tonghuaroot, baywet, and adrian05-ms baywet baywet
adrian05-ms adrian05-ms
ProTip! Advisories are also available from the GraphQL API