VYPR
High severity7.5NVD Advisory· Published Jan 16, 2026· Updated Jun 17, 2026

CVE-2026-0613

CVE-2026-0613

Description

The Librarian contains an internal port scanning vulnerability, facilitated by the web_fetch tool, which can be used with SSRF-style behavior to perform GET requests to internal IP addresses and services, enabling scanning of the Hertzner cloud environment that TheLibrarian uses. The vendor has fixed the vulnerability in all affected versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • TheLibrarian/TheLibrariancpe-rescue3 versions
    0+ 2 more
    • (no CPE)range: 0
    • cpe:2.3:a:thelibrarian:the_librarian:-:*:*:*:*:*:*:*
    • (no CPE)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.