CVE-2026-46517

LMDeploy is a toolkit for compressing, deploying, and serving large language models. In versions 0.12.3 and prior, hardcoded "trust_remote_code=True" enables HF supply-chain RCE without user opt-in. At time of publication, there are no publicly available patches.
Configurations

No configuration.

History

23 Jul 2026, 09:10

Type Values Removed Values Added
Summary
  • (es) LMDeploy es un conjunto de herramientas para comprimir, desplegar y servir modelos de lenguaje grandes. En las versiones 0.12.3 y anteriores, el valor 'trust_remote_code=True' codificado de forma rígida permite RCE en la cadena de suministro de HF sin que el usuario lo autorice explícitamente. En el momento de la publicación, no hay parches disponibles públicamente.

11 Jun 2026, 12:16

Type Values Removed Values Added
References () https://github.com/InternLM/lmdeploy/security/advisories/GHSA-9xq9-36w5-q796 - () https://github.com/InternLM/lmdeploy/security/advisories/GHSA-9xq9-36w5-q796 -

10 Jun 2026, 16:17

Type Values Removed Values Added
References () https://github.com/InternLM/lmdeploy/security/advisories/GHSA-9xq9-36w5-q796 - () https://github.com/InternLM/lmdeploy/security/advisories/GHSA-9xq9-36w5-q796 -

10 Jun 2026, 00:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-10 00:16

Updated : 2026-07-23 09:10


NVD link : CVE-2026-46517

Mitre link : CVE-2026-46517

CVE.ORG link : CVE-2026-46517


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')

CWE-915

Improperly Controlled Modification of Dynamically-Determined Object Attributes

CWE-1188

Insecure Default Initialization of Resource