CVE-2026-7712
A security vulnerability has been detected in MindsDB up to 26.01. Affected is the function pickle.loads of the component Pickle Handler. The manipulation leads to deserialization. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
- Affected products
- Mindsdb
- Fix
- Available
- CVSS 2.0
- 6.5 MEDIUM
- CVSS 3.1
- 6.3 MEDIUM
- EPSS
- 0.3% (22th percentile)
- Weakness
- CWE-20, CWE-502
- NVD status
- Deferred
- Published
- 2026-05-03
CVE-2026-7712 at NVD
No indexed exploits for CVE-2026-7712 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2026-7712 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.