docling has 8 CVEs on record. Disclosures have slowed: 1 in the last 90 days after 7 in the 90 before. The busiest recent month was June 2026 with 6. The median CVSS is 7.5 (high). None have a confirmed exploitation report.
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.5
- Publish → KEV
- —
- Last 90 days
- 1 prev 7
Worst active — by depth score
CVE-2026-44016High· 8.2Docling: Unsafe Playwright-based HTML Rendering45CVE-2026-44020High· 7.5Docling: Unsafe XML Entity Expansion in USPTO Patent Backend41CVE-2026-44017High· 7.5Docling: Unsafe Zip Extraction in EasyOCR Model Download41CVE-2026-31248High· 7.5Docling's METS GBS backend is vulnerable to XML Entity Expansion (XXE) attacks41CVE-2026-31247High· 7.5Docling's JATS XML backend is vulnerable to XML Entity Expansion (XXE) attacks41
docling vulnerabilities
CVEs affecting docling, newest first. Open any entry for full detail, references, and exploit status.
8 CVEsRSS
CVE-2026-47214High· 7.1Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem
Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. Prior to 2.94.0, the HTML backend has unsafe URI and path handling. This vulnerability is fixed in 2.94.0.
CVE-2026-44020High· 7.5Docling: Unsafe XML Entity Expansion in USPTO Patent Backend
Docling: Unsafe XML Entity Expansion in USPTO Patent Backend
CVE-2026-44018Medium· 5.5Docling: Unsafe Archive Extraction and XML Parsing in METS-GBS Backend
Docling: Unsafe Archive Extraction and XML Parsing in METS-GBS Backend
CVE-2026-44016High· 8.2Docling: Unsafe Playwright-based HTML Rendering
Docling: Unsafe Playwright-based HTML Rendering
CVE-2026-44017High· 7.5Docling: Unsafe Zip Extraction in EasyOCR Model Download
Docling: Unsafe Zip Extraction in EasyOCR Model Download
CVE-2026-44022Medium· 5.5Docling: Potential Path Traversal via LaTeX \includegraphics and \input Commands
Docling: Potential Path Traversal via LaTeX \includegraphics and \input Commands
CVE-2026-31247High· 7.5Docling's JATS XML backend is vulnerable to XML Entity Expansion (XXE) attacks
Docling's JATS XML backend is vulnerable to XML Entity Expansion (XXE) attacks
CVE-2026-31248High· 7.5Docling's METS GBS backend is vulnerable to XML Entity Expansion (XXE) attacks
Docling's METS GBS backend is vulnerable to XML Entity Expansion (XXE) attacks