Vulnerability PYSEC-2026-4185

High Risk
HIGH RISK
CVSS Score: 7.5
Score Range: 7.0–8.9
High severity vulnerabilities (CVSS 7.0–8.9). Serious vulnerabilities that should be prioritized soon after critical fixes.
10 days ago
September 26, 2026 at 02:16 PM UTC
No summary available
0.22.0 - 0.23.0
0.22.0 - 0.23.0

Details

vLLM versions 0.22.0 through 0.23.0 fail to validate stop_token_ids against vocabulary bounds in Rust HTTP and gRPC frontends, allowing out-of-vocabulary token IDs to reach MinTokensLogitsProcessor. Attackers can submit requests with min_tokens greater than zero and out-of-vocabulary stop_token_ids to trigger CUDA tensor indexing failures that leave EngineCore in a fatal state requiring service restart.

Impacted packages

Timeline

Published
10 days ago
September 26, 2026 at 02:16 PM UTC
Fixed (0.24.0)
3 months ago
June 30, 2026 at 01:18 AM UTC
Last Modified
3 hours ago
October 07, 2026 at 10:00 AM UTC