Known Vulnerabilities for products from VLLM
Listed below are 8 of the newest known vulnerabilities associated with the vendor "VLLM".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-56340 json | Not Provided | 2026-06-20 | 2026-06-20 | |
| CVE-2026-44223 json | vLLM is an inference and serving engine for large language models (LLMs). From to before 0.20.0, the extract_hidden_states s... | Not Provided | 2026-05-12 | 2026-05-15 |
| CVE-2026-44222 json | vLLM is an inference and serving engine for large language models (LLMs). From 0.6.1 to before 0.20.0, there is a a Token Inj... | Not Provided | 2026-05-12 | 2026-05-14 |
| CVE-2026-34760 json | Not Provided | 2026-04-02 | 2026-04-03 | |
| CVE-2026-34756 json | vLLM is an inference and serving engine for large language models (LLMs). From 0.1.0 to before 0.19.0, a Denial of Service vu... | Not Provided | 2026-04-06 | 2026-04-20 |
| CVE-2026-34755 json | vLLM is an inference and serving engine for large language models (LLMs). From 0.7.0 to before 0.19.0, the VideoMediaIO.load_... | Not Provided | 2026-04-06 | 2026-04-20 |
| CVE-2026-34753 json | vLLM is an inference and serving engine for large language models (LLMs). From 0.16.0 to before 0.19.0, a server-side request... | Not Provided | 2026-04-06 | 2026-04-20 |
| CVE-2026-27893 json | Not Provided | 2026-03-27 | 2026-03-27 | |
| CVE-2026-12491 json | Not Provided | 2026-06-17 | 2026-06-17 | |
| CVE-2026-10813 json | Not Provided | 2026-06-04 | 2026-06-04 | |
| CVE-2026-7141 json | A vulnerability was found in vllm up to 0.19.0. The affected element is the function has_mamba_layers of the file vllm/v1/kv_... | Not Provided | 2026-04-27 | 2026-05-01 |
| CVE-2026-5497 json | vLLM versions 0.8.0 and later are vulnerable to an Out-of-Memory (OOM) Denial of Service (DoS) attack due to unbounded frame ... | Not Provided | 2026-06-11 | 2026-06-15 |