Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 23 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Modeltc
Modeltc lightllm |
|
| Vendors & Products |
Modeltc
Modeltc lightllm |
Wed, 23 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 23 Sep 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | LightLLM through 1.2.0 contains a remote code execution vulnerability in the KV-transfer worker when started with --pd_trans_mode nccl, which exposes an unauthenticated RPyC control channel that deserializes attacker-supplied data. Attackers can send malicious pickled objects to the exposed RPyC ThreadedServer to execute arbitrary code with the privileges of the LightLLM service account. | |
| Title | LightLLM through 1.2.0 Unauthenticated Remote Code Execution via NCCL PD RPyC Control Channel | |
| Weaknesses | CWE-502 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-23T14:33:27.577Z
Reserved: 2026-09-23T13:13:12.619Z
Link: CVE-2026-96560
Updated: 2026-09-23T14:31:56.298Z
Status : Received
Published: 2026-09-23T14:17:11.073
Modified: 2026-09-23T15:17:33.110
Link: CVE-2026-96560
No data.
OpenCVE Enrichment
Updated: 2026-09-23T16:15:05Z