CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107717

MEDIUMCVSS 6.5NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

Banks generates meaningful LLM prompts using a simple template language. Prior to 2.5.0, Banks Prompt.chat_messages() attempts to parse every line of rendered template output as ChatMessage JSON. When an application renders untrusted data and passes the returned ChatMessage objects to an LLM provide

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-107717 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107717

MEDIUMCVSS 6.5NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

Banks generates meaningful LLM prompts using a simple template language. Prior to 2.5.0, Banks Prompt.chat_messages() attempts to parse every line of rendered template output as ChatMessage JSON. When an application renders untrusted data and passes the returned ChatMessage objects to an LLM provide

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]