LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure
Abgelehnt
45.5
2026-04-25T20:18
Score-Aufschlüsselung
60
novelty
25
reach
35
concrete_impact
55
emotional_hook
70
source_quality
45
platform_fit
Zusammenfassung
A high-severity security flaw in LMDeploy, an open-source toolkit for compressing, deploying, and serving LLMs, has come under active exploitation in the wild less than 13 hours after its public disclosure. The vulnerability, tracked as CVE-2026-33626 (CVSS score: 7.5), relates to a Server-Side Request Forgery (SSRF) vulnerability that could be exploited to access sensitive data. "A server-side
Skripte (0)
5986d971…
Noch kein Skript generiert.
Score 45.5 — unter Schwellwert (65)