<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>LMCache - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/vendors/lmcache/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Wed, 07 Oct 2026 17:03:43 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/vendors/lmcache/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Unauthenticated Remote Code Execution in LMCache</title><link>https://feed.craftedsignal.io/briefs/2026-10-lmcache-rce/</link><pubDate>Wed, 07 Oct 2026 17:03:43 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-10-lmcache-rce/</guid><description>LMCache versions up to 0.5.5 are vulnerable to unauthenticated remote code execution via the /run_script endpoint, allowing attackers to inject and execute arbitrary OS commands.</description><content:encoded><![CDATA[<p>LMCache versions up to 0.5.5 contain a critical unauthenticated remote code execution (RCE) vulnerability. An attacker can exploit this by sending a crafted HTTP POST request to the /run_script endpoint. The application fails to properly secure the environment, allowing the attacker to interact with the FastAPI app object. By leveraging this object, an attacker can bypass Python's guarded import restrictions to retrieve real built-in functions, load the 'os' module, and subsequently execute arbitrary operating system commands with the privileges of the LMCache process. This vulnerability poses a severe risk, as it allows for full compromise of the underlying host system without requiring prior authentication. Organizations utilizing LMCache should prioritize patching to version 0.5.6 or higher or restrict network access to the management interface.</p>
<h2 id="attack-chain">Attack Chain</h2>
<ol>
<li>Attacker performs network reconnaissance to identify exposed LMCache instances.</li>
<li>Attacker sends a malicious HTTP POST request to the target's /run_script endpoint.</li>
<li>The LMCache application accepts the input and processes the provided script.</li>
<li>Attacker utilizes the FastAPI app object to access and recover restricted Python built-in functions.</li>
<li>Attacker bypasses guarded <strong>import</strong> mechanisms to import the 'os' library.</li>
<li>Attacker invokes system functions within the Python script to execute arbitrary OS commands.</li>
<li>OS commands run with the privileges of the LMCache service process.</li>
<li>Attacker gains persistence or exfiltrates data from the compromised host.</li>
</ol>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of CVE-2026-107204 results in full remote code execution on the server running LMCache. An attacker gains the ability to execute arbitrary commands, potentially leading to complete system takeover, data exfiltration, or deployment of further payloads. Given the critical 9.8 CVSS score, this vulnerability is highly attractive for opportunistic exploitation against internet-facing infrastructure.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Upgrade LMCache to version 0.5.6 or later immediately to address CVE-2026-107204.</li>
<li>Apply network segmentation to restrict access to the LMCache /run_script endpoint to known, trusted management IPs.</li>
<li>Deploy the provided Sigma rule to monitor for suspicious POST requests to the /run_script path.</li>
<li>Enable web server access logs to audit all requests directed at the LMCache API.</li>
</ul>
]]></content:encoded><category domain="severity">critical</category><category domain="type">advisory</category><category>remote-code-execution</category><category>vulnerability</category><category>web-application</category><category>ssrf</category><category>web-vulnerability</category><category>proxy</category></item></channel></rss>