CVE-2026-106440 | hydra-ecosystem Hydra up to 1.2.x/1.4.0.dev9 Utils hydra.utils.get_method custom_search_space code injection
A vulnerability marked as problematic has been reported in hydra-ecosystem Hydra up to 1.2.x/1.4.0.dev9. This affects the function hydra.utils.get_method of the component Utils. The manipulation of the argument custom_search_space leads to code injection.
This vulnerability is referenced as CVE-2026-106440. The attack can only be performed from a local environment. No exploit is available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More