Bug 2546155 (CVE-2026-105743)
| Summary: | CVE-2026-105743 docling: docling: Server-Side Request Forgery via improper URL validation | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | low | Docs Contact: | |
| Priority: | low | ||
| Version: | unspecified | CC: | ebourniv, hasun, nyancey, ptisnovs, sbunciak |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in docling. A remote attacker can exploit a Server-Side Request Forgery (SSRF) vulnerability by providing crafted URLs when remote resource fetching is enabled. Incomplete validation allows requests to be resolved again by the network client, enabling techniques such as Domain Name System (DNS) rebinding or parser confusion to bypass internal address restrictions. Consequently, the application may send unauthorized requests to internal network services, potentially exposing sensitive data when responses are rendered.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-10-05 21:31:31 UTC
|