LightLLM 1.2.0 及之前版本中, 部署模式暴露了一个未认证的 RPyC 服务,且该服务启用了 。攻击者可以访问视觉 RPyC 端口,并通过向 方法传入包含 方法的对象,触发反序列化操作,从而以服务账户权限执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-103270 | 7.5 HIGH | LightLLM through 1.2.0 Missing Authentication on RL Control Routes |
| CVE-2026-103243 | 5.8 MEDIUM | LightLLM through 1.2.0 Server-Side Request Forgery via multimodal endpoints |
No comments yet