CVE-2026-105145 | Weaviate Verba up to 2.1.3 generate_stream Endpoint util.py get_environment information disclosure
A vulnerability was found in Weaviate Verba up to 2.1.3. It has been classified as problematic. Affected by this vulnerability is the function get_environment of the file goldenverba/components/util.py of the component generate_stream Endpoint. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2026-105145. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More