A vulnerability marked as problematic has been reported in koxudaxi datamodel-code-generator up to 0.60.1. The impacted element is an unknown function of the file src/datamodel_code_generator/model/template/TypeAliasAnnotation.jinja2. The manipulation of the argument Comment leads to code injection.
This vulnerability is uniquely identified as CVE-2026-54654. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.