Source · DiggingBeagle record
Microsoft Semantic Kernel InMemoryVectorStore filter functionality vulnerable to remote code execution
GitHub-reviewed advisory for CVE-2026-26030, identifying affected Semantic Kernel Python versions and the patched release.
- Published
- Feb 19, 2026
- Accessed
- Sep 14, 2026
- Publisher
- GitHub Advisory Database
- Source type
- primary
- Version
- 2026-02-19
- Rights
- Public web source; citation and short excerpt only.
Each support, contradiction or context label applies to a cited Claim, not to a whole Case.
Source record
The advisory marks versions before 1.39.4 as affected and 1.39.4 as patched.
Claim-level citations (1)
- supportsSemantic Kernel prompt injection reached host code execution: The GitHub advisory lists Semantic Kernel Python versions before 1.39.4 as affected and 1.39.4 as patched.
Affected versions and patched versions
Cite this record
DiggingBeagle. “Microsoft Semantic Kernel InMemoryVectorStore filter functionality vulnerable to remote code execution.” Published Feb 19, 2026 · Accessed Sep 14, 2026. https://diggingbeagle.com/sources/microsoft-semantic-kernel-inmemoryvectorstore-filter-functionality-vulnerable-to/
Citation guidance