Home

Description

The Librarian `supervisord` status page can be retrieved by the `web_fetch` tool, which can be used to retrieve running processes within TheLibrarian backend. The vendor has fixed the vulnerability in all affected versions.

PUBLISHED Reserved 2026-01-05 | Published 2026-01-16 | Updated 2026-01-16 | Assigner certcc

Problem types

CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere

Product status

Any version
affected

References

mindgard.ai/blog/thelibrarian-ios-ai-security-

thelibrarian.io/

cve.org (CVE-2026-0615)

nvd.nist.gov (CVE-2026-0615)

Download JSON