Unauthenticated Remote Code Execution in LightLLM by ModelTC
CVE-2026-103395

9.3CRITICAL

Key Information:

Vendor

Modeltc

Status
Vendor
CVE Published:
30 September 2026

What is CVE-2026-103395?

LightLLM versions up to 1.2.0 expose an unauthenticated RPyC service with allow_pickle enabled, leading to the deserialization of attacker-controlled arguments within the remote_infer_images method. This vulnerability allows unauthorized access to the visual RPyC port, enabling attackers to pass objects crafted with reduce methods, which can execute arbitrary code with the privileges of the service account.

Affected Version(s)

LightLLM 0 <= 1.2.0

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mingkai Yu
Jiajia Liu
.