Product
The openapi-typescript-codegen package through version 0.31.0 is vulnerable to code injection when processing malicious OpenAPI documents, allowing attackers to execute arbitrary JavaScript.