Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

vllm — Vulnerabilities & Security Advisories 50

All 50 CVE vulnerabilities found in vllm, with AI-generated Chinese analysis, references, and POCs.

This page details security vulnerabilities within the vllm software product, focusing on common weakness enumerations associated with its codebase and deployment architecture. It aggregates publicly disclosed security issues ranging from early development stages through recent stable releases, ensuring comprehensive coverage of historical and current threat landscapes. Users can track vendor advisories from the vllm development team to stay informed about official patches and mitigation strategies. The page allows for a deep dive into specific weakness classes, helping developers and security analysts understand the root causes and technical contexts of reported flaws. Additionally, it provides a searchable history of vulnerabilities linked to this specific product, enabling users to review past incidents and assess long-term security trends. By consolidating these data points, the resource serves as a centralized reference for maintaining system integrity. It is particularly useful for teams implementing vllm in production environments who need to verify their exposure to known risks. The information presented is strictly factual, aiming to facilitate informed decision-making regarding updates and configuration hardening without speculative commentary. This aggregation supports proactive security management by highlighting patterns in how vulnerabilities manifest within the vllm ecosystem.

Vendor: vllm-project

CVE IDTitleCVSSSeverityPublished
CVE-2026-55514 vLLM denial of service via prompt embeds on M-RoPE models CWE-617--2026-07-06
CVE-2026-55574 vLLM: ReDoS via structured_outputs.regex compiled without timeout in xgrammar and outlines backends CWE-1333--2026-07-06
CVE-2026-54234 vLLM: Remote DoS in vLLM via Invalid Recovered Token Reinjection CWE-20 7.5 High2026-07-06
CVE-2026-55646 vLLM speech-to-text endpoints allocate full upload before enforcing the audio file-size limit CWE-400 6.5 Medium2026-07-06
CVE-2026-47155 vLLM: Artifact Pin Decay in vLLM allows pinned deployments to load unpinned code, weights, and processors CWE-345 6.5 Medium2026-06-22
CVE-2026-41523 vLLM: Security Check Bypass via assert Statement in Activation Function Loading Allows Arbitrary Code Execution CWE-94 7.5 High2026-06-22
CVE-2026-54232 vLLM: Dependency Confusion Vulnerability in vLLM Dockerfile CWE-427 8.8 High2026-06-22
CVE-2026-54233 vLLM: OOM Denial of Service via Audio Decompression Bomb CWE-409 6.5 Medium2026-06-22
CVE-2026-54236 vLLM: incomplete CVE-2026-22778 fix leaks PIL repr addresses via Anthropic router CWE-532 5.3 Medium2026-06-22
CVE-2026-54235 vLLM: temperature=NaN and temperature=Infinity bypass validation and propagate to GPU kernels CWE-1287--2026-06-22
CVE-2026-48746 vLLM: OpenAI auth bypass CWE-444 9.1 Critical2026-06-22
CVE-2026-53923 vLLM GGUF Kernels: int64_t to int truncation of tensor dimensions causes GPU buffer overflow CWE-681--2026-06-22
CVE-2026-56340 vLLM - Denial of Service via Unvalidated Multimodal Embeddings CWE-20 8.8 High2026-06-20
CVE-2025-71379 vllm - Regular Expression Denial of Service in Multiple Components CWE-1333 4.3 Medium2026-06-20
CVE-2026-12491 Vllm: vllm: image exif rotation & png trns transparency not normalized, causing mismatch between model input and expectations CWE-115 4.8 Medium2026-06-17
CVE-2026-9540 vllm-project vllm OpenAI-compatible Serving Path denial of service CWE-404 5.3 Medium2026-05-26
CVE-2026-44223 vLLM: extract_hidden_states speculative decoding crashes server on any request with penalty parameters CWE-131 6.5 Medium2026-05-12
CVE-2026-44222 vLLM: Remote DoS via Special-Token Placeholders CWE-129 6.5 Medium2026-05-12
CVE-2026-7141 vllm KV Block kv_cache_interface.py has_mamba_layers uninitialized resource CWE-908 5.6 Medium2026-04-27
CVE-2026-34756 vLLM Affected by Unauthenticated OOM Denial of Service via Unbounded `n` Parameter in OpenAI API Server CWE-770 6.5 Medium2026-04-06
CVE-2026-34755 vLLM Affected by Denial of Service via Unbounded Frame Count in video/jpeg Base64 Processing CWE-770 6.5 Medium2026-04-06
CVE-2026-34753 vLLM affected by Server-Side Request Forgery (SSRF) in `download_bytes_from_url ` CWE-918 5.4 Medium2026-04-06
CVE-2026-34760 vLLM: Downmix Implementation Differences as Attack Vectors Against Audio AI Models CWE-20 5.9 Medium2026-04-02
CVE-2026-27893 vLLM's hardcoded trust_remote_code=True in NemotronVL and KimiK25 bypasses user security opt-out CWE-693 8.8 High2026-03-26
CVE-2026-25960 SSRF Protection Bypass in vLLM CWE-918 7.1 High2026-03-09
CVE-2026-22778 vLLM leaks a heap address when PIL throws an error CWE-532 9.8 Critical2026-02-02
CVE-2026-24779 vLLM vulnerable to Server-Side Request Forgery (SSRF) in `MediaConnector` CWE-918 7.1 High2026-01-27
CVE-2026-22807 vLLM affected by RCE via auto_map dynamic module loading during model initialization CWE-94 8.8 High2026-01-21
CVE-2026-22773 vLLM is vulnerable to DoS in Idefics3 vision models via image payload with ambiguous dimensions CWE-770 6.5 Medium2026-01-10
CVE-2025-66448 vLLM vulnerable to remote code execution via transformers_utils/get_config CWE-94 7.1 High2025-12-01

All 50 known CVE vulnerabilities affecting vllm with full Chinese analysis, references, and POCs where available.