Uncontrolled File Access Vulnerability in Docling Document Processing Software
CVE-2026-105744

7.5HIGH

Key Information:

Vendor
CVE Published:
5 October 2026

What is CVE-2026-105744?

Docling, a tool designed for versatile document processing and integration with generative AI, has a significant vulnerability affecting versions from 2.94.0 to 2.132.0. This flaw arises when users opt for the LatexBackendOptions(tikz_engine="tectonic"), allowing untrusted TikZ bodies to be compiled without proper restrictions on TeX file primitives like \openin and \openout. Attackers can exploit this by crafting input that may lead to unauthorized reading of files and creating or overwriting writable files. Additionally, if the tikz_engine_allow_shell_escape option is enabled, shell commands can also be executed via TeX. The default configuration, which does not use Tectonic rendering, is not impacted. Users are urged to upgrade to version 2.132.0 or later to mitigate the risk.

Affected Version(s)

docling >= 2.94.0, < 2.132.0

docling-slim >= 2.94.0, < 2.132.0

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.