CVE-2026-15143Disclosure

LOWCVSS 9.3 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw was found in the file_type content detector of guardrails-detectors. This vulnerability allows a remote attacker to supply an arbitrary XML Schema Definition (XSD) string, which is processed without proper restrictions. This can lead to server-side requests to arbitrary URLs or local file reads, potentially resulting in sensitive information disclosure, such as cloud provider credentials or access to internal network services.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-07-10: 3Patch / Workaround · 2026-07-10: 1Technical Details · 2026-07-10: 307-10
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets2 URLs
By indicator
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-15143 A flaw was found in the file_type content detector of guardrails-detectors. This vulnerability allows a remote attacker to supply an arbitrary XML Schema Definition (… https://www.cve.org/CVERecord?id=CVE-2026-15143

    Post summary

    A flaw in guardrails-detectors' file_type content detector allows remote attackers to supply arbitrary XML Schema Definitions; no PoC, exploit code, active exploitation, or patch information is provided.

    00010681
    57.8K followersView on X
  • Upwind Security MDR@UpwindMDR
    Patch

    🚨Critical - guardrails-detectors XSD SSRF / File Read in file_type Detector (CVE-2026-15143) The file_type content detector in guardrails-detectors (shipped in Red Hat OpenShift AI) processes an attacker-supplied XML Schema Definition (XSD) string without proper restrictions. A remote attacker can abuse this to make the server issue requests to arbitrary URLs or read local files. That enables SSRF into internal network services and disclosure of sensitive data such as cloud-provider credentials via metadata endpoints. Since it's part of the LLM guardrails pipeline inspecting untrusted input, exposure is realistic - CVSS 9.3, no auth or user interaction. 👉Apply the Red Hat OpenShift AI update for CVE-2026-15143 (see RHSA).

    Post summary

    The message highlights a critical SSRF/file‑read flaw (CVE‑2026‑15143) in Red Hat OpenShift AI and urges applying the vendor update.

    00000102
    246 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-15143 A flaw was found in the file_type content detector of guardrails-detectors. This vulnerability allows a remote attacker to supply an arbitrary XML Schema Definition (… https://www.cve.org/CVERecord?id=CVE-2026-15143 ----- Traducción: Se encontró una fa… http://infoflow.cloud`

    Post summary

    The text announces CVE-2026-15143, a flaw in guardrails‑detectors that lets remote attackers supply arbitrary XML Schema Definitions. No PoC, exploit, or patch details are provided.

    0000036
    91 followersView on X

Explore more