CVE-2026-103270 - LightLLM through 1.2.0 Missing Authentication on RL Control Routes
CVE ID :CVE-2026-103270 Published : 30. September 2026 15:22 | 1 Stunde, 16 Minuten ago Description :LightLLM through 1.2.0 mounts reinforcement learning control routes on the public HTTP API without authentication checks. Unauthenticated attackers can call endpoints like /pause_generation,...