HIGH
EricLBuehler
CVE published 2026-10-11
CVE-2026-108759
CVE-2026-108759 is a high-severity vulnerability in mistral.rs versions 0.9.0 through 0.9.4. The vulnerability allows sandboxed shell code to read and overwrite files outside the sandbox via symlinks, potentially leading to unauthorized file access and modification. This issue arises from a link following vulnerability in mistralrs-code-exec, enabling attackers or prompt-injected agents to name symlinks a [truncated]