CVE-2026-101078 | deepseek-ai deepseek-harness up to 0.1.7-rc.2 Landlock Backend profiles.ts isolation

SecurityVulns

A vulnerability was found in deepseek-ai deepseek-harness up to 0.1.7-rc.2. It has been declared as critical. Affected is an unknown function of the file packages/sandbox/sandbox-local/src/profiles.ts of the component Landlock Backend. Such manipulation leads to improper isolation or compartmentalization.

This vulnerability is listed as CVE-2026-101078. The attack must be carried out locally. In addition, an exploit is available.

It is advisable to implement a patch to correct this issue.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More