
🚨 CVE-2026-22778 (CVSS N/A): vLLM Vulnerable to Remote Code Execution vLLM is vulnerable to unauthorized model access via improper authentication in the OpenAI-compatible API server, allowing unauthenticated attackers to list, load, or unload models and exfiltrate sensitive model weights. Search by vul.cve Filter 👉 vul.cve="CVE-2026-22778" ZoomEye Dork 👉 app="vLLM" 294 exposed instances. 🔥 CVE Feed Intelligence: https://www.darkeye.org/vuln/cve/CVE-2026-22778 ZoomEye Link: https://www.zoomeye.ai/searchResult?q=dnVsLmN2ZT0iQ1ZFLTIwMjYtMjI3Nzgi&utm_source=twitter&utm_medium=social&utm_campaign=cve_ops_20260206 Refer: https://nvd.nist.gov/vuln/detail/CVE-2026-22778 #ZoomEye #NetSec #OSINT #CyberSecurity #vLLM #AIsecurity #LLMsecurity #ZeroDay
Post summary
The tweet announces CVE-2026-22778, detailing RCE in vLLM due to improper authentication and noting 294 exposed instances, but provides no PoC, exploit, or patch information.

















