Critical severity9.9NVD Advisory· Published May 8, 2026· Updated May 11, 2026
CVE-2026-41512
CVE-2026-41512
Description
ai-scanner is an AI model safety scanner built on NVIDIA garak. From version 1.0.0 to before version 1.4.1, there is a remote code execution vulnerability via JavaScript injection in BrowserAutomation::PlaywrightService. This issue has been patched in version 1.4.1.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/0din-ai/ai-scanner/releases/tag/v1.4.1nvdPatchProduct
- github.com/0din-ai/ai-scanner/security/advisories/GHSA-r27j-xxgx-f5vrnvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.