{"id":"CVE-2026-106440","title":"Hydra is a framework for elegantly configuring complex applications","summary":"Hydra is a framework for elegantly configuring complex applications. From 1.2.0 until 1.3.0 and 1.4.0.dev10, the hydra-optuna-sweeper package accepts a configuration-controlled dotted path in hydra.sweeper.custom_search_space, resolves i…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","cwe":["CWE-470"],"vendor":"hydra-ecosystem","product":"hydra","affected":["hydra >= 1.2.0, < 1.3.0","hydra >= 1.4.0.dev4, < 1.4.0.dev10"],"published":"2026-10-06","updated":"2026-10-06","sourceUpdated":"2026-10-06T20:03:40.690","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-106440","references":[{"url":"https://github.com/hydra-ecosystem/hydra/commit/0dd18084589a3d3e577d1f1a8a48fb485c94a5e6","label":"security-advisories@github.com"},{"url":"https://github.com/hydra-ecosystem/hydra/commit/4720dfca2bde27fa140ec287a05709668fbdf168","label":"security-advisories@github.com"},{"url":"https://github.com/hydra-ecosystem/hydra/releases/tag/v1.3.7","label":"security-advisories@github.com"},{"url":"https://github.com/hydra-ecosystem/hydra/security/advisories/GHSA-5jjj-9xc3-rm56","label":"security-advisories@github.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-10-06T19:13:33.853Z","slug":"CVE-2026-106440","body":"## Overview\n\nHydra is a framework for elegantly configuring complex applications. From 1.2.0 until 1.3.0 and 1.4.0.dev10, the hydra-optuna-sweeper package accepts a configuration-controlled dotted path in hydra.sweeper.custom_search_space, resolves it with hydra.utils.get_method(), and later invokes the returned callable in the Hydra controller process. Because get_method() is a trusted-input lookup helper and does not apply the execution policy used by instantiate(), an attacker who controls Optuna sweep configuration or command-line overrides can select importable Python code for execution with the application's privileges, including bypassing a trusted execution whitelist on affected Hydra 1.4 development releases. This issue is fixed in versions 1.3.0 and 1.4.0.dev10.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}