Product
The Kiota Java and PHP generators are vulnerable to a code injection attack where malicious OpenAPI descriptions can lead to the generation of attacker-controlled source code due to improper sanitization of block-comment delimiters.