PT-2026-91174 · Lightllm · Lightllm

·

CVE-2026-90919

·

Published

2026-09-14

·

Updated

2026-09-18

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions LightLLM versions prior to 1.2.1
Description An unauthenticated remote code execution issue exists in the Config Server. The /visual register WebSocket endpoint passes the first client frame directly to the pickle.loads() function. An attacker with network access to the Config Server port can send a malicious serialized payload using a reduce method to execute arbitrary code with the privileges of the Config Server process. Pickle is a Python module used for serializing and deserializing objects.
Recommendations Update to a version newer than 1.2.0. Restrict network access to the Config Server port to prevent external exposure.

Exploit

Fix

RCE

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-90919

Affected Products

Lightllm