Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Security Intel Hub 16+

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Examples: RCE · SSRF · GHSA · log4j
Filter
Clear filters
High
vLLM Video Base64 Processing DoS Vulnerability (CVE-2026-34750)
CVE-2026-34750 · github.com · 2026-04-07
vllm >=0.7.0
Read more
High
SSRF in vLLM download_bytes_from_url function
GHSA-xx73-m8j2-vqcf · github.com · 2026-04-07
vllm >= 0.16.0
Read more
High
GitLab: Remove librosa dependency to fix CVE-2023-38325
CVE-2023-38325 · github.com · 2026-04-03
GitLab audio dependency (librosa)
Read more
Premium intel
Critical
vLLM CVE-2026-22778 Critical RCE via Video Processing
CVE-2026-22778 · github.com · 2026-02-03
vLLM >= 0.8.3, < 0.14.1
Read more
Medium
DoS in vLLM Idefics3 Vision Models via Ambiguous Image Dimensions
GHSA-grg2-63fw-f2qr · github.com · 2026-01-20
vLLM >= 0.6.4, < 0.12.0
Read more
Premium intel
High
vLLM prompt_embs Deserialization DoS and Potential RCE (CVE-2025-62164)
CVE-2025-62164 · github.com · 2025-11-21
vLLM >= 0.10.2
Read more
Medium
vLLM CVE-2025-62372 DoS via malformed multimodal embedding inputs
CVE-2025-62372 · github.com · 2025-11-21
vLLM>=0.5.5
Read more
High
vLLM CVE-2025-62426 DoS via chat_template_kwargs
CVE-2025-62426 · github.com · 2025-11-21
vLLM >= 0.5.5
Read more
CVSS 6.5
vLLM CVE-2023-48044 DoS via Malformed Tool Schema
github.com · 2025-06-01

### Critical Vulnerability Information #### Vulnerability Overview - **Type**: DoS via Malformed pattern and type Fields in vLLM Tool Schema - **Severity**: Medium (6.5/10) - **CVE ID**: CVE-2023-4804…

Read more
CVSS 6.5
vLLM CVE-2025-48942 Remote DoS via Invalid JSON Schema
github.com · 2025-06-01

### Key Information #### Vulnerability Overview - **Vulnerability Name**: DOS: Remotely kill vllm over http with invalid JSON schema - **Severity**: Medium (6.5/10) - **CVE ID**: CVE-2025-48942 #### A…

Read more
Premium intel
CVSS 8.0
vLLM Multi-Node Cluster RCE via Pickle Deserialization (CVE-2025-30165)
github.com · 2025-05-08

### Critical Vulnerability Information #### Vulnerability Overview - **Title**: Remote Code Execution Vulnerability in vLLM Multi-Node Cluster Configuration - **Severity**: High (8.0/10) - **CVE ID**:…

Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.