Vulnerability PYSEC-2026-3997
Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
10 days ago
September 18, 2026 at 02:19 PM UTC
No summary available
0.0.1 - 0.27.1
0.0.1 - 0.27.1
Details
vLLM versions before 0.28.0 fail to validate the lower bound of token IDs in the /v1/embeddings and /pooling endpoints, allowing unauthenticated attackers to crash the engine by submitting negative token IDs. A single request with a negative token ID triggers a CUDA device-side assertion that poisons the GPU context, causing all subsequent requests to fail until the process restarts.
References
Related Vulnerabilities
Other vulnerabilities affecting the same packages
Medium Risk
9 days ago
No summary available
0.0.1 - 0.29.0 PYSEC-2026-4000
0.0.1 - 0.29.0 PYSEC-2026-4000
Medium Risk
10 days ago
No summary available
0.0.1 - 0.28.0 PYSEC-2026-3998
0.0.1 - 0.28.0 PYSEC-2026-3998
Medium Risk
10 days ago
No summary available
0.0.1 - 0.29.0 PYSEC-2026-3999
0.0.1 - 0.29.0 PYSEC-2026-3999
Unknown
11 days ago
No summary available
0.0.1 - 0.29.0 PYSEC-2026-3996
0.0.1 - 0.29.0 PYSEC-2026-3996
Medium Risk
11 days ago
vLLM: Request-selected PyNvVideoCodec GPU decode bypasses static VRAM reservation
0.0.1 - 0.27.1 GHSA-8pw2-6jv3-mj5j
0.0.1 - 0.27.1 GHSA-8pw2-6jv3-mj5j
Impacted packages
Timeline
Published
10 days ago
September 18, 2026 at 02:19 PM UTC
Fixed (0.28.0)
1 month ago
August 26, 2026 at 10:07 AM UTC
Last Modified
2 hours ago
September 29, 2026 at 09:00 AM UTC