GHSA-xjw9-4gw8-4rqxCriticalCVSS 9.9

Microsoft Semantic Kernel InMemoryVectorStore filter functionality vulnerable to remote code execution

Published
February 19, 2026
Last Modified
June 8, 2026

🔗 CVE IDs covered (1)

📋 Description

Impact:

An RCE vulnerability has been identified in Microsoft Semantic Kernel Python SDK, specifically within the InMemoryVectorStore filter functionality.

Patches:

The problem has been fixed in python-1.39.4. Users should upgrade this version or higher.

Workarounds:

Avoid using InMemoryVectorStore for production scenarios.

References:

Release python-1.39.4 · microsoft/semantic-kernel · GitHub PR to block use of dangerous attribute names that must not be accessed in filter expressions

🎯 Affected products1

  • pip/semantic-kernel:< 1.39.4

🔗 References (6)