
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-1117 is an Improper Access Control vulnerability in the lollms_generation_events.py component of the parisneo/lollms Python package (pip). It affects versions prior to 2.1.0, with version 5.9.0 specifically identified as vulnerable. The vulnerability was published on February 2, 2026, and allows unauthenticated remote clients to access sensitive Socket.IO event handlers without any authentication or authorization checks. It carries a CVSS v3.0 base score of 8.2 (High) (Github Advisory, Feedly).
The root cause is CWE-284 (Improper Access Control): the add_events function in lollms_generation_events.py registers Socket.IO event handlers — including generate_text, cancel_generation, generate_msg, and generate_msg_from — without implementing any authentication or authorization checks, allowing any unauthenticated network client to invoke them. Compounding this, the server uses shared global flags (lollmsElfServer.busy, lollmsElfServer.cancel_gen) for state management across a multi-client environment, meaning one client's actions can corrupt or interfere with the server state experienced by other clients. No preconditions such as prior authentication or special network position are required — the attack vector is fully remote with low complexity. The vulnerability was originally reported via the Huntr bug bounty platform (Github Advisory, Huntr).
Successful exploitation allows unauthenticated attackers to trigger resource-intensive AI text generation operations, cancel ongoing generation tasks for legitimate users, and corrupt shared server state through race conditions on global flags. The primary impacts are high availability degradation (denial of service via resource exhaustion or state disruption) and low integrity impact (unauthorized state modification affecting other clients' sessions). Confidentiality is not directly impacted, as the vulnerability does not expose sensitive data, but service disruption in a multi-user environment can affect all connected clients simultaneously (Github Advisory, Feedly).
There is no public proof-of-concept exploit code and no evidence of in-the-wild exploitation at this time (Feedly). The EPSS score is approximately 0.077–0.125%, placing it in roughly the 31st percentile for exploitation likelihood within 30 days (Github Advisory). The vulnerability is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog. No threat actor attribution has been reported. The low attack complexity and lack of authentication requirements make it straightforward to exploit if a vulnerable instance is network-accessible.
python-socketio or socket.io-client in Node.js) without providing any credentials or authentication tokens.generate_text or generate_msg with a crafted payload to trigger resource-intensive AI generation on the server without authorization.generate_text or generate_msg events in rapid succession to exhaust server CPU/memory resources, causing degraded performance or unavailability for legitimate users.cancel_generation event to set the global lollmsElfServer.cancel_gen flag, abruptly terminating ongoing generation tasks for all other connected clients and corrupting shared server state.lollmsElfServer.busy flag, causing unpredictable server behavior (Github Advisory, Huntr).generate_text, generate_msg, generate_msg_from, or cancel_generation Socket.IO events in server logs originating from external or unexpected IP addresses.lollmsElfServer.busy or lollmsElfServer.cancel_gen global flags; legitimate users reporting their generation tasks being cancelled unexpectedly.The patched version is lollms 2.1.0 (pip), which resolves this vulnerability; users should upgrade immediately (Github Advisory). The fix commit is available at ParisNeo/lollms@36a5b51 (GitHub Commit). As interim workarounds, restrict network access to the lollms server to trusted clients only (e.g., via firewall rules or binding to localhost), implement authentication middleware for Socket.IO connections, and replace global state flags with per-client session state tracking to prevent cross-client interference. Rate limiting on generation events should also be considered to reduce denial-of-service risk.
The vulnerability was reported through the Huntr AI bug bounty platform and received coverage from automated security intelligence aggregators shortly after disclosure on February 2, 2026 (Huntr). A brief mention appeared on InfoSec Exchange social media (InfoSec Exchange). No significant vendor statements, notable researcher commentary, or major media coverage beyond standard vulnerability database indexing has been observed.
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."