Description

The Librarian contains an internal port scanning vulnerability, facilitated by the `web_fetch` tool, which can be used with SSRF-style behavior to perform GET requests to internal IP addresses and services, enabling scanning of the Hertzner cloud environment that TheLibrarian uses. The vendor has fixed the vulnerability in all affected versions.

INFO

Published Date :

2026-01-16T12:46:02.733Z

Last Modified :

2026-01-16T21:41:53.497Z

Source :

certcc
AFFECTED PRODUCTS

The following products are affected by CVE-2026-0613 vulnerability.

Vendors Products
Thelibrarian
  • The Librarian
  • Thelibrarian
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-0613.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact