CVE-2026-26190

CRITICAL NUCLEI

Milvus < 2.5.27 - Unauthenticated API Access via Exposed TCP Port

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2026-26190 has a Nuclei detection template available — see the Nuclei card below for the Shodan/FOFA recon queries.

Description

Milvus is an open-source vector database built for generative AI applications. Prior to 2.5.27 and 2.6.10, Milvus exposes TCP port 9091 by default, which enables authentication bypasses. The /expr debug endpoint uses a weak, predictable default authentication token derived from etcd.rootPath (default: by-dev), enabling arbitrary expression evaluation. The full REST API (/api/v1/*) is registered on the metrics/management port without any authentication, allowing unauthenticated access to all business operations including data manipulation and credential management. This vulnerability is fixed in 2.5.27 and 2.6.10.

Nuclei Templates (1)

Milvus - Unauthenticated Metrics API Access
CRITICALVERIFIEDby WRG-11
Shodan: http.html:"404 page not found" port:"9091"

Scores

CVSS v3 9.8
EPSS 0.2766
EPSS Percentile 97.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-306
Status published
Products (2)
milvus/milvus < 2.5.27
milvus-io/milvus 0 - 2.5.27Go
Published Feb 13, 2026
Tracked Since Feb 18, 2026