vulnerability · DiggingBeagle record

CVE-2026-26030

Semantic Kernel In-Memory Vector Store filter RCE vulnerability.

Entity kind
vulnerability

A relationship records context, not guilt, vulnerability or endorsement.

Record description

A prompt-injection-to-code-execution path affecting Semantic Kernel Python versions before 1.39.4 when the vulnerable filter functionality is exposed through the Search Plugin.

Cite this record

DiggingBeagle. “CVE-2026-26030.” https://diggingbeagle.com/entities/cve-2026-26030/

Citation guidance

Why this archive exists

The source matters after the headline fades.

DiggingBeagle is a non profit research project documenting AI security incidents, agent failures, vulnerabilities and AI-assisted operations. A case keeps its claims beside the sources that support, contest or limit them. Later updates stay visible, so a reader can see when the account changed.

We publish case reconstructions, dated reporting and analysis across records. Each has a different evidentiary role. About the project and our methodology explain how the work is reviewed.