← All credits
Jiajia Liu
31 vulnerability records and advisories credit this contributor.
CVE-2026-103765
Mooncake through 0.3.13.post1 Missing Authentication in HTTP Metadata Server
CVE-2026-103764
Mooncake transfer engine before 0.3.13 Unauthenticated Arbitrary Memory Read/Write via TCP Transport
CVE-2026-103761
Mooncake transfer engine through 0.3.13.post1 Memory Exhaustion via Unbounded Notify Queue
CVE-2026-103760
Mooncake transfer engine through 0.3.13.post1 Denial of Service via P2P Handshake Daemon Response Write
CVE-2026-103395
LightLLM through 1.2.0 Unauthenticated Remote Code Execution via Visual-Only RPyC Service
CVE-2026-103270
LightLLM through 1.2.0 Missing Authentication on RL Control Routes
CVE-2026-103243
LightLLM through 1.2.0 Server-Side Request Forgery via multimodal endpoints
CVE-2026-103040
LightLLM through 1.2.0 Unauthenticated Remote Code Execution via Router Profiler RPyC Service
CVE-2026-103041
LightLLM through 1.2.0 Unauthenticated Remote Code Execution via Embed Cache RPyC Service
CVE-2026-103042
LightLLM through 1.2.0 Unauthenticated Memory Exhaustion via NCCL Control Channel set_value