High severity7.5NVD Advisory· Published Jan 16, 2026· Updated Jun 17, 2026
CVE-2026-0612
CVE-2026-0612
Description
The Librarian contains a information leakage vulnerability through the web_fetch tool, which can be used to retrieve arbitrary external content provided by an attacker, which can be used to proxy requests through The Librarian infrastructure. The vendor has fixed the vulnerability in all versions of TheLibrarian.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:thelibrarian:the_librarian:-:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:thelibrarian:the_librarian:-:*:*:*:*:*:*:*
- (no CPE)range: 0
- (no CPE)
Patches
Vulnerability mechanics
References
2- mindgard.ai/blog/thelibrarian-ios-ai-security-nvdThird Party Advisory
- thelibrarian.ionvdProduct
News mentions
0No linked articles in our index yet.