CVE-2026-93436
- EPSS 0.54%
- Veröffentlicht 17.09.2026 22:15:31
- Zuletzt bearbeitet 28.09.2026 18:37:42
vLLM through 0.29.0 fails to properly clean up decode-side metadata for rejected inference requests in prefill/decode disaggregated deployments. Remote attackers can submit requests with max_tokens=0 to exhaust decode-worker memory without bound unti...
CVE-2026-69147
- EPSS 0.46%
- Veröffentlicht 16.09.2026 17:49:20
- Zuletzt bearbeitet 07.10.2026 14:16:57
vLLM is an inference and serving engine for large language models. Prior to 0.28.0, request bodies for Chat Completions and Responses can set media_io_kwargs.video.video_backend to pynvvideocodec, and MediaConnector.fetch_video forwards that choice t...
CVE-2026-57173
- EPSS 0.66%
- Veröffentlicht 16.09.2026 16:34:39
- Zuletzt bearbeitet 07.10.2026 14:24:22
vLLM is an inference and serving engine for large language models. Prior to 0.24.0, the input_audio handling path for /v1/chat/completions calls AudioMediaIO.load_bytes or AudioMediaIO.load_file without passing VLLM_MAX_AUDIO_DECODE_DURATION_S to the...
CVE-2026-92365
- EPSS 0.39%
- Veröffentlicht 16.09.2026 14:00:08
- Zuletzt bearbeitet 22.09.2026 16:18:11
A vulnerability was found in vllm-project vllm up to 0.29.0. Affected by this issue is some unknown functionality of the file vllm/v1/sample/thinking_budget_state.py. The manipulation results in inefficient algorithmic complexity. It is possible to l...
CVE-2026-92220
- EPSS 0.52%
- Veröffentlicht 16.09.2026 02:15:10
- Zuletzt bearbeitet 16.09.2026 20:17:47
A vulnerability was found in vllm-project vLLM 0.26.0/0.27.0. Affected is the function MoRIIOConnectorScheduler.request_finished/MoRIIOConnectorWorker.get_finished/MoRIIOWrapper._handle_release_message of the file vllm/distributed/kv_transfer/kv_conn...
CVE-2026-90878
- EPSS 0.3%
- Veröffentlicht 15.09.2026 04:15:11
- Zuletzt bearbeitet 15.09.2026 14:37:14
A vulnerability was determined in vllm-project vLLM up to 0.27.1. This affects an unknown part of the file /v1/chat/completions of the component Jinja Template Rendering. This manipulation of the argument chat_template causes resource consumption. Th...
CVE-2026-90713
- EPSS 0.15%
- Veröffentlicht 14.09.2026 12:00:10
- Zuletzt bearbeitet 15.09.2026 14:17:33
A security flaw has been discovered in vllm-project vLLM up to 0.29.0. The affected element is the function TiktokenTokenizer::new of the file rust/src/text/src/backend/hf/mod.rs of the component tiktoken vocab File Handler. The manipulation results ...
CVE-2026-90555
- EPSS 0.27%
- Veröffentlicht 12.09.2026 12:08:58
- Zuletzt bearbeitet 16.09.2026 17:31:06
vLLM versions before 0.28.0 fail to validate audio sample rate headers in the transcription endpoint, allowing authenticated clients to bypass duration checks. Attackers can submit forged FLAC headers with inflated sample rates to trigger excessive m...
CVE-2026-90554
- EPSS 0.11%
- Veröffentlicht 12.09.2026 12:08:57
- Zuletzt bearbeitet 24.09.2026 20:28:13
vLLM versions >=0.10.2 and <0.28.0 do not apply any audio decode-size or duration limit when extracting audio from video input for NanoNemotronVL models. In nano_nemotron_vl.py, _extract_audio_from_videos calls load_audio_pyav(BytesIO(video_bytes)) w...
CVE-2026-90553
- EPSS 0.21%
- Veröffentlicht 12.09.2026 12:08:56
- Zuletzt bearbeitet 16.09.2026 17:31:40
vLLM before 0.28.0 contains a remote code execution vulnerability in the LlavaOnevision2 processor loader that ignores the trust_remote_code parameter when loading remote processor classes. Attackers can craft a malicious model with arbitrary code in...