{"data":{"id":"11cb9856-6c35-4aab-be21-fe308885bfe6","title":"CVE-2026-105746: Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI…","summary":"Docling versions 2.83.0 through 2.131.0 send page images to a configured OCR endpoint through KServeV2OcrModel in docling/models/stages/ocr/kserve_v2_ocr_model.py, without checking pipeline_options.enable_remote_services, even when it is set to false. StandardPdfPipeline._make_ocr_model also fails to pass that flag into the OCR factory, so remote OCR runs in configurations that rely on remote services being disabled. The destination is set by the caller, not chosen by an attacker.","solution":"Fixed in 2.131.0.","labels":["security","privacy"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-105746","publishedAt":"2026-10-05T22:16:57.480Z","cveId":"CVE-2026-105746","cweIds":["CWE-668","CWE-693"],"cvssScore":"2.2","cvssSeverity":"low","severity":"low","attackType":["other"],"issueType":"vulnerability","affectedPackages":null,"affectedPackageNames":null,"affectedVendors":[],"affectedVendorsRaw":["Docling"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":"Docling remote OCR sends page images despite remote services disabled","headlinePromptVersion":"h1","cvssVector":"CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N","attackVector":"network","attackComplexity":"high","privilegesRequired":"high","userInteraction":"none","exploitMaturity":"unknown","epssScore":0.00223,"epssCheckedAt":"2026-10-10T03:00:37.498Z","kevDateAdded":null,"advisoryAliases":null,"affectedPackagesSource":null,"affectedPackagesCheckedAt":"2026-10-10T03:42:54.037Z","patchAvailable":null,"disclosureDate":"2026-10-05T22:16:57.480Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality"],"aiComponentTargeted":"inference","llmSpecific":false,"classifierConfidence":0.85,"researchCategory":null,"atlasIds":null}}