← Back to Vulnerability Reports CVE Intelligence

CVE-2026-33626

LMDeploy (Open-source LLM Toolkit)No exploitation reported
CVSSawaiting NVD
ExploitationNo exploitation reported
Triage statusUnder Review
ActionSchedule for next cycle

Affected product

LMDeploy (Open-source LLM Toolkit)

Remediation Steps

  1. Update LMDeploy to patched version immediately via pip or package manager
  2. Audit server logs for SSRF attack attempts targeting internal resources
  3. Implement network-level restrictions on outbound requests from LMDeploy instances
  4. Review and restrict IAM permissions for LMDeploy service accounts
  5. Deploy Web Application Firewall rules to block suspicious SSRF patterns

Coverage on defend.network

🤖 This CVE page is generated by defend.network from NVD, CISA KEV, EPSS, and our verified daily briefings. Severity and exploitation data come from official sources; always verify remediation steps against the official vendor advisory before acting in production.

Get Critical CVE Alerts

Subscribe free and hear about actively exploited CVEs like this one first.