Security Advisory

CVE-2025-3163

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-03 15:31:04
Last updated 2025-04-21 11:27:57
Assigner VulDB
State PUBLISHED

Description

A vulnerability was found in InternLM LMDeploy up to 0.7.1. It has been declared as critical. Affected by this vulnerability is the function Open of the file lmdeploy/docs/en/conf.py. The manipulation leads to code injection. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.