PT-2026-96313 · Vllm · Vllm

·

CVE-2026-94623

·

Published

2026-09-21

·

Updated

2026-09-29

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions vLLM versions prior to 0.29.1
Description A denial of service issue exists in the NIXL connector's prefix caching implementation within prefill/decode disaggregated deployments. The system fails to properly validate block counts when processing multi-prompt completion requests. An attacker can cause the decode worker to terminate and remain unavailable until a restart occurs by submitting completion requests containing multiple prompts of varying lengths, which triggers an assertion failure in the NixlBaseConnectorWorker. apply prefix caching() function.
Recommendations Update vLLM to version 0.29.1 or later.

Exploit

Fix

DoS

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-94623
PYSEC-2026-4005

Affected Products

Vllm