Browse all 20 CVE security advisories affecting docling-project. AI-powered Chinese analysis, POCs, and references for each vulnerability.
This page aggregates vulnerabilities associated with the vendor docling-project, covering products, weaknesses, and tags within the software supply chain. It collects known security flaws, including configuration errors and code defects, spanning the full historical record of reported issues. Readers can use this aggregation to track the vendor's advisory history, analyze specific weakness classes, and review the vulnerability lifecycle of related products. The data provides a consolidated view for security teams to assess risk exposure without navigating individual CVE entries.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-44023 | Docling Core has unsafe remote filename resolution — docling-core CWE-22 | 8.6 | High | 2026-07-16 |
| CVE-2026-44019 | Docling Core has insufficient validation of image reference URIs — docling-core CWE-73 | 8.1 | High | 2026-07-16 |
| CVE-2026-24009 | Docling Core vulnerable to Remote Code Execution via unsafe PyYAML usage — docling-core CWE-502 | 8.1 | High | 2026-01-22 |
This page lists every published CVE security advisory associated with docling-project. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.