{"data":{"id":"50ab73b4-65e3-41c9-93a6-343695bc68fc","title":"CVE-2026-105751: Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI…","summary":"Docling versions 2.107.0 through 2.120.3 are affected by CVE-2026-105751 in docling/backend/opendocument_backend.py. When an xlink:href value on a draw:image element points to a part missing from the archive, the _image_ref_from_odf_image function reads it as a filesystem path with no scheme check, no extraction-directory confinement, and no enable_local_fetch check. Readable image files are embedded in converted output, and other paths can be told apart through the read attempt.","solution":"Fixed in 2.120.3.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-105751","publishedAt":"2026-10-05T22:16:58.253Z","cveId":"CVE-2026-105751","cweIds":["CWE-22"],"cvssScore":null,"cvssSeverity":null,"severity":"medium","attackType":["other"],"issueType":"vulnerability","affectedPackages":["docling@>= 2.107.0, < 2.120.3 (fixed: 2.120.3)"],"affectedPackageNames":["docling"],"affectedVendors":[],"affectedVendorsRaw":["Docling"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":"Docling local file read through image references in OpenDocument files","headlinePromptVersion":"h1","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":"unknown","epssScore":0.00366,"epssCheckedAt":"2026-10-10T03:00:41.257Z","kevDateAdded":null,"advisoryAliases":["GHSA-4xhp-xg4w-8ppm"],"affectedPackagesSource":"ghsa","affectedPackagesCheckedAt":"2026-10-10T03:42:51.362Z","patchAvailable":true,"disclosureDate":"2026-10-05T22:16:58.253Z","capecIds":["CAPEC-126"],"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality"],"aiComponentTargeted":"framework","llmSpecific":false,"classifierConfidence":0.85,"researchCategory":null,"atlasIds":null}}