{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/vendors/lmcache/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:lmcache:lmcache:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.8,"id":"CVE-2026-107204"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["LMCache (\u003c= 0.5.5)"],"_cs_severities":["critical"],"_cs_tags":["remote-code-execution","vulnerability","web-application","ssrf","web-vulnerability","proxy"],"_cs_type":"advisory","_cs_vendors":["LMCache"],"content_html":"\u003cp\u003eLMCache versions up to 0.5.5 contain a critical unauthenticated remote code execution (RCE) vulnerability. An attacker can exploit this by sending a crafted HTTP POST request to the /run_script endpoint. The application fails to properly secure the environment, allowing the attacker to interact with the FastAPI app object. By leveraging this object, an attacker can bypass Python's guarded import restrictions to retrieve real built-in functions, load the 'os' module, and subsequently execute arbitrary operating system commands with the privileges of the LMCache process. This vulnerability poses a severe risk, as it allows for full compromise of the underlying host system without requiring prior authentication. Organizations utilizing LMCache should prioritize patching to version 0.5.6 or higher or restrict network access to the management interface.\u003c/p\u003e\n\u003ch2 id=\"attack-chain\"\u003eAttack Chain\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eAttacker performs network reconnaissance to identify exposed LMCache instances.\u003c/li\u003e\n\u003cli\u003eAttacker sends a malicious HTTP POST request to the target's /run_script endpoint.\u003c/li\u003e\n\u003cli\u003eThe LMCache application accepts the input and processes the provided script.\u003c/li\u003e\n\u003cli\u003eAttacker utilizes the FastAPI app object to access and recover restricted Python built-in functions.\u003c/li\u003e\n\u003cli\u003eAttacker bypasses guarded \u003cstrong\u003eimport\u003c/strong\u003e mechanisms to import the 'os' library.\u003c/li\u003e\n\u003cli\u003eAttacker invokes system functions within the Python script to execute arbitrary OS commands.\u003c/li\u003e\n\u003cli\u003eOS commands run with the privileges of the LMCache service process.\u003c/li\u003e\n\u003cli\u003eAttacker gains persistence or exfiltrates data from the compromised host.\u003c/li\u003e\n\u003c/ol\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of CVE-2026-107204 results in full remote code execution on the server running LMCache. An attacker gains the ability to execute arbitrary commands, potentially leading to complete system takeover, data exfiltration, or deployment of further payloads. Given the critical 9.8 CVSS score, this vulnerability is highly attractive for opportunistic exploitation against internet-facing infrastructure.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade LMCache to version 0.5.6 or later immediately to address CVE-2026-107204.\u003c/li\u003e\n\u003cli\u003eApply network segmentation to restrict access to the LMCache /run_script endpoint to known, trusted management IPs.\u003c/li\u003e\n\u003cli\u003eDeploy the provided Sigma rule to monitor for suspicious POST requests to the /run_script path.\u003c/li\u003e\n\u003cli\u003eEnable web server access logs to audit all requests directed at the LMCache API.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-10-07T17:04:22Z","date_published":"2026-10-07T17:03:43Z","id":"https://feed.craftedsignal.io/briefs/2026-10-lmcache-rce/","summary":"LMCache versions up to 0.5.5 are vulnerable to unauthenticated remote code execution via the /run_script endpoint, allowing attackers to inject and execute arbitrary OS commands.","title":"Unauthenticated Remote Code Execution in LMCache","url":"https://feed.craftedsignal.io/briefs/2026-10-lmcache-rce/"}],"language":"en","title":"CraftedSignal Threat Feed - LMCache","version":"https://jsonfeed.org/version/1.1"}