PT-2026-106253 · Docling · Docling

CVE-2026-105750

·

Published

2026-10-05

·

Updated

2026-10-06

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Docling versions 2.82.0 through 2.118.0
Description When the HTML backend renders pages in a headless browser using HTMLBackendOptions(render page=True), the enable local fetch option is not enforced. The function HTMLDocumentBackend. get browser request block reason allows file: URLs unconditionally, failing to confine local requests to the source document directory. This allows a crafted HTML file to embed arbitrary local text files (such as .env or credential files) into a browser-rendered page image when the playwright dependency is installed and the input is provided as a filesystem Path. This disclosure is passive, as only content rendered visibly within the page viewport is captured.
Recommendations Update to version 2.118.1. As a temporary workaround, avoid using render page=True on untrusted HTML or pass the input as a stream instead of a Path.

Fix

Incorrect Authorization

Files Accessible to External Parties

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-105750
GHSA-Q43M-VHCP-MHVM

Affected Products

Docling