CVE-2026-106040 | kvcache-ai Mooncake up to 0.3.13.post1 coro_rpc EvictDiskReplica improper authorization (EUVD-2026-93403)

SecurityVulns

A vulnerability was found in kvcache-ai Mooncake up to 0.3.13.post1. It has been rated as critical. This affects the function EvictDiskReplica of the component coro_rpc. This manipulation causes improper authorization.

This vulnerability is registered as CVE-2026-106040. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More