High severity7.5NVD Advisory· Published Jan 16, 2026· Updated Jun 17, 2026
CVE-2026-0613
CVE-2026-0613
Description
The Librarian contains an internal port scanning vulnerability, facilitated by the web_fetch tool, which can be used with SSRF-style behavior to perform GET requests to internal IP addresses and services, enabling scanning of the Hertzner cloud environment that TheLibrarian uses. The vendor has fixed the vulnerability in all affected versions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
30+ 2 more
- (no CPE)range: 0
- cpe:2.3:a:thelibrarian:the_librarian:-:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
2- mindgard.ai/blog/thelibrarian-ios-ai-security-disclosurenvdThird Party Advisory
- thelibrarian.ionvdProduct
News mentions
0No linked articles in our index yet.