{"data":{"id":"6ac68dc8-d817-4d37-b476-1a4e87561968","title":"CVE-2026-105742: Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI…","summary":"Docling versions 2.95.0 through 2.132.0 have a flaw in the HTML image resource loader in docling/backend/utils/image_resource_loader.py. When enable_remote_fetch=True and fetch_images=True, the loader sends headers set in HTMLBackendOptions.headers to every remote image URL in an untrusted document, including across cross-origin redirects. A document author could therefore obtain the caller's configured credentials, such as API keys and cookies. The default configuration is not affected.","solution":"Fixed in 2.132.0.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-105742","publishedAt":"2026-10-05T22:16:56.867Z","cveId":"CVE-2026-105742","cweIds":["CWE-201","CWE-522"],"cvssScore":"3.7","cvssSeverity":"low","severity":"low","attackType":["other"],"issueType":"vulnerability","affectedPackages":["docling@>= 2.95.0, < 2.132.0 (fixed: 2.132.0)","docling-slim@>= 2.95.0, < 2.132.0 (fixed: 2.132.0)"],"affectedPackageNames":["docling","docling-slim"],"affectedVendors":[],"affectedVendorsRaw":["Docling"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","attackVector":"network","attackComplexity":"high","privilegesRequired":"none","userInteraction":"none","exploitMaturity":"unknown","epssScore":0.00226,"epssCheckedAt":"2026-10-10T02:53:34.387Z","kevDateAdded":null,"advisoryAliases":["GHSA-p3fw-7699-7926"],"affectedPackagesSource":"ghsa","affectedPackagesCheckedAt":"2026-10-10T03:42:56.089Z","patchAvailable":true,"disclosureDate":"2026-10-05T22:16:56.867Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality"],"aiComponentTargeted":"framework","llmSpecific":false,"classifierConfidence":0.85,"researchCategory":null,"atlasIds":null}}