PT-2026-70874 · Zotero · Papersgpt-For-Zotero

·

CVE-2026-73032

·

Published

2026-08-11

·

Updated

2026-08-12

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PapersGPT for Zotero version 0.6.1
Description A remote code execution issue exists where arbitrary JavaScript can be executed by returning malicious code from an LLM endpoint. This occurs because the response is passed unsanitized to the window.eval() function within views.ts. Exploitation can be achieved through prompt injection in PDFs, Man-in-the-Middle (MITM) interception of API requests, or the use of a malicious custom LLM endpoint. Successful exploitation allows arbitrary code execution within Zotero's chrome-privileged context, granting the attacker capabilities to read and write files, execute processes, and access all Zotero data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-73032

Affected Products

Papersgpt-For-Zotero