CVE-2026-41512

CRITICAL

Remote code execution via JavaScript injection in `BrowserAutomation::PlaywrightService`

Title source: cna
STIX 2.1

Description

ai-scanner is an AI model safety scanner built on NVIDIA garak. From version 1.0.0 to before version 1.4.1, there is a remote code execution vulnerability via JavaScript injection in `BrowserAutomation::PlaywrightService`. This issue has been patched in version 1.4.1.

References (2)

Core 2
Core References

Scores

CVSS v3 9.9
EPSS 0.0032
EPSS Percentile 55.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-94
Status published
Products (2)
0din-ai/ai-scanner >= 1.0.0, < 1.4.1
mozilla/0din_scanner 1.0.0 - 1.4.1
Published May 08, 2026
Tracked Since May 08, 2026