CVE-2026-39909 | ggml-org llama.cpp up to b9060 RPC server GRAPH_RECOMPUTE handler use after free

SecurityVulns

A vulnerability was found in ggml-org llama.cpp up to b9060. It has been classified as critical. The affected element is the function GRAPH_RECOMPUTE handler of the component RPC server GRAPH_RECOMPUTE handler. This manipulation causes use after free.

This vulnerability is tracked as CVE-2026-39909. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More