PatchSiren

EricLBuehler CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH EricLBuehler CVE published 2026-10-11

CVE-2026-108759

CVE-2026-108759 is a high-severity vulnerability in mistral.rs versions 0.9.0 through 0.9.4. The vulnerability allows sandboxed shell code to read and overwrite files outside the sandbox via symlinks, potentially leading to unauthorized file access and modification. This issue arises from a link following vulnerability in mistralrs-code-exec, enabling attackers or prompt-injected agents to name symlinks a [truncated]