Over 10 years we help companies reach their financial and branding goals. Engitech is a values-driven technology agency dedicated.

Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

CVE-2026-33626 is a critical SSRF vulnerability in LMDeploy, an open-source LLM inference engine, that was weaponized within 12-13 hours of public disclosure. An attacker can force an exposed LMDeploy instance to issue HTTP requests to cloud instance metadata services or internal network resources, enabling credential theft from cloud IMDS endpoints and lateral movement into the hosting environment.

Author

Tech Jacks Solutions