Discussion

LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure

Started by The Hacker News · 24 Apr 2026 11:23 · 20 Views · 0 Replies
Thread Starter #0
A high-severity security flaw in LMDeploy, an open-source toolkit for compressing, deploying, and serving LLMs, has come under active exploitation in the wild less than 13 hours after its public disclosure. The vulnerability, tracked as CVE-2026-33626 (CVSS score: 7.5), relates to a Server-Side Request Forgery (SSRF) vulnerability that could be exploited to access sensitive data. "A server-side

Okumaya devam et...

You must be logged in to reply.

0 quotes selected