Unrated severityNVD Advisory· Published Feb 21, 2026· Updated Feb 25, 2026
OpenSift: Race-prone local persistence could cause state corruption/loss
CVE-2026-27189
Description
OpenSift is an AI study tool that sifts through large datasets using semantic search and generative AI. Versions 1.1.2-alpha and below, use non-atomic and insufficiently synchronized local JSON persistence flows, potentially causing concurrent operations to lose updates or corrupt local state across sessions/study/quiz/flashcard/wellness/auth stores. This issue has been fixed in version 1.1.3-alpha.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/OpenSift/OpenSift/releases/tag/v1.1.3-alphamitrex_refsource_MISC
- github.com/OpenSift/OpenSift/security/advisories/GHSA-3pmp-j953-whxqmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.