LMCache CVE -2026-105192: Unpatched Critical RCE Vulnerability
2026-10-09 01:14:10
According to CoinMeta, as reported by Forkast, a vulnerability in LMCache (identified as CVE-2026-105192) has not been patched, posing a serious risk of remote code execution (RCE). This vulnerability affects versions 0.3.9 to 0.5.5, and has a severity score of 9.8 on the CVSS scale. It stems from insecure deserialization, allowing attackers to execute arbitrary code via unauthenticated ZeroMQ router sockets on port 5555 by default, which could potentially lead to a complete system compromise. Although this port is bound to localhost by default, operators often configure it to be routable, thereby expanding the attack surface. As of October 7, 2026, no patching measures have been released yet; it is recommended to immediately restrict network access to port LMCache.
Source:Forkast
This content is for market information only and does not constitute investment advice.
Follow HQYC official accounts to stay updated

Hot Articles
Refresh

Ethereum October 2026 Outlook: $5,000 or $2,500?
13h ago

Bitcoin October 2026 Outlook: Can the 19% Historical Gain Hold?
09-30 12:57

Dogecoin Price: Whales Buy $112M, Can DOGE Break $0.10?
09-29 12:48

What is Solidigm? Is Its $150B IPO Valuation a Bubble?
09-28 13:00

Is PAXG Stable? Is Gold-Backed Better Than Stablecoins?
09-24 18:04



