The Librarian contains a information leakage vulnerability through the `web_fetch` tool, which can be used to retrieve arbitrary external content provided by an attacker, which can be used to proxy requests through The Librarian infrastructure. The vendor has fixed the vulnerability in all versions of TheLibrarian.
Metrics
Affected Vendors & Products
References
History
Mon, 19 Jan 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Thelibrarian
Thelibrarian thelibrarian |
|
| Vendors & Products |
Thelibrarian
Thelibrarian thelibrarian |
Fri, 16 Jan 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 16 Jan 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Librarian contains a information leakage vulnerability through the `web_fetch` tool, which can be used to retrieve arbitrary external content provided by an attacker, which can be used to proxy requests through The Librarian infrastructure. The vendor has fixed the vulnerability in all versions of TheLibrarian. | |
| Title | CVE-2026-0612 | |
| References |
|
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2026-01-16T21:42:52.062Z
Reserved: 2026-01-05T17:39:25.528Z
Link: CVE-2026-0612
Updated: 2026-01-16T21:42:37.828Z
Status : Awaiting Analysis
Published: 2026-01-16T13:16:11.677
Modified: 2026-01-16T22:16:19.227
Link: CVE-2026-0612
No data.