CVE-2026-103765

CVE-2026-103765 published: Mooncake through 0.3.13.post1 contains a missing authentication vulnerability in the HTTP metadata server /metadata handler that allows unauthenticated attackers to read, overwrite, and delete transfer engine metadata keys. Attackers can poison segment desc...

View full NVD advisory → ← Back to CVE watch