PT-2026-99318 · Vllm · Vllm

·

CVE-2026-100647

·

Published

2026-09-26

·

Updated

2026-09-26

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions vLLM versions prior to 0.29.0
Description A denial-of-service issue exists in OpenAI-compatible and Anthropic API endpoints. The cache salt parameter lacks maximum length validation and is processed on the single EngineCore scheduler thread. Unauthenticated attackers can send HTTP requests containing salt values of several hundred megabytes, triggering expensive pickle serialization and SHA-256 hashing. This process stalls the scheduler thread, denying service to all concurrent requests. Real-world incidents of this issue being exploited have been reported.
Recommendations Update to version 0.29.0 or later. As a temporary mitigation, restrict or avoid using the cache salt parameter in API requests.

Exploit

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-100647
GHSA-WPWW-V874-PH2P

Affected Products

Vllm