An attacker who can provide configuration to a TechDocs build may execute code in the generator runtime. Impact is greatest when documentation generation runs with backend credentials or host access.
Patched in @backstage/plugin-techdocs-node version 1.15.4.
Use external TechDocs generation in an isolated environment without sensitive credentials or host access. Restrict and review changes to documentation configuration before generation.
{
"cwe_ids": [
"CWE-502"
],
"github_reviewed": true,
"github_reviewed_at": "2026-10-07T18:03:12Z",
"nvd_published_at": "2026-10-07T15:17:15Z",
"severity": "HIGH"
}