kvcache-ai Mooncake
8 known vulnerabilities in kvcache-ai Mooncake, 1 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-104433 CVSS 8.7 high Mooncake transfer engine before 0.3.12 contains an out-of-bounds read vulnerability in the readString function of include/common.h that…
- CVE-2026-103765 CVSS 8.8 high Mooncake through 0.3.13.post1 contains a missing authentication vulnerability in the HTTP metadata server /metadata handler that allows…
- CVE-2026-103764 CVSS 9.3 critical Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated…
- CVE-2026-103761 CVSS 8.7 high Mooncake transfer engine through 0.3.13.post1 contains a memory exhaustion vulnerability in TransferMetadata::receivePeerNotify that…
- CVE-2026-103760 CVSS 8.2 high Mooncake transfer engine through 0.3.13.post1 contains a denial of service vulnerability that allows unauthenticated remote attackers to…
- CVE-2026-96764 CVSS 2.1 low A weakness has been identified in kvcache-ai mooncake up to 0.3.12/0.3.14-rc1. Impacted is the function…
- CVE-2026-96763 CVSS 2.1 low A security flaw has been discovered in kvcache-ai mooncake up to 0.3.12/0.3.13.post1/0.3.14-rc1. This issue affects the function…
- CVE-2026-96762 CVSS 5.5 medium A vulnerability was determined in kvcache-ai mooncake up to 0.3.12/0.3.13.post1. This affects the function UnmountSegment of the component…