CVE-2026-76850
LMDeploy Remote Code Execution via Unsafe Pickle Deserialization
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
LMDeploy's disaggregated serving feature is vulnerable to arbitrary code execution due to unsafe deserialization of messages. An unauthenticated remote attacker can exploit this by controlling a peer to send malicious data, leading to code execution in the engine process if disaggregated serving is enabled and exposed.