CVE-2026-54661 | acacode swagger-typescript-api up to 13.12.1 Axios Client Template axios-http-client.ejs HttpClient/Api servers[0].url code injection
A vulnerability was found in acacode swagger-typescript-api up to 13.12.1. It has been classified as problematic. This issue affects the function HttpClient/Api of the file templates/base/http-clients/axios-http-client.ejs of the component Axios Client Template. The manipulation of the argument servers[0].url leads to code injection.
This vulnerability is traded as CVE-2026-54661. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More