Uncontrolled File Access Vulnerability in Docling Document Processing Software
CVE-2026-105744
What is CVE-2026-105744?
Docling, a tool designed for versatile document processing and integration with generative AI, has a significant vulnerability affecting versions from 2.94.0 to 2.132.0. This flaw arises when users opt for the LatexBackendOptions(tikz_engine="tectonic"), allowing untrusted TikZ bodies to be compiled without proper restrictions on TeX file primitives like \openin and \openout. Attackers can exploit this by crafting input that may lead to unauthorized reading of files and creating or overwriting writable files. Additionally, if the tikz_engine_allow_shell_escape option is enabled, shell commands can also be executed via TeX. The default configuration, which does not use Tectonic rendering, is not impacted. Users are urged to upgrade to version 2.132.0 or later to mitigate the risk.
Affected Version(s)
docling >= 2.94.0, < 2.132.0
docling-slim >= 2.94.0, < 2.132.0
