Cybersecurity researchers have disclosed a critical security vulnerability in Ollama that could allow a remote, unauthenticated attacker to leak its entire process memory. The out-of-bounds read flaw, tracked as CVE-2026-7482 with a CVSS score of 9.1, potentially affects over 300,000 servers worldwide. The vulnerability has been named Bleeding Llama by Cyera. Ollama is a lightweight framework for running large language models locally.
