CVE-2026-90713
A security flaw has been discovered in vllm-project vLLM up to 0.29.0. The affected element is the function TiktokenTokenizer::new of the file rust/src/text/src/backend/hf/mod.rs of the component tiktoken vocab File Handler. The manipulation results in denial of service. The attack is only possible with local access. The exploit has been released to the public and may be used for attacks. The pull request to fix this issue awaits acceptance.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 4.8
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P
- EPSS probability
- 0.15%
- CWE
- CWE-404
- Published
- 2026-09-14
- Last modified
- 2026-09-15
Affected products
- vllm-project vLLM
- vllm-project vLLM
- vllm-project vLLM
- vllm-project vLLM
- vllm-project vLLM
- vllm-project vLLM
- vllm-project vLLM
- vllm-project vLLM
Weakness type
Related vulnerabilities
- CVE-2026-29771 — Netmaker: Denial of Service via Server Shutdown Endpoint
- CVE-2026-1876 — Denial-of-Service (DoS) vulnerability in Ethernet function of MELSEC iQ-F Series Ethernet module
- CVE-2026-41869 — Apache Nutch: Unauthenticated forced shutdown and job interruption in Nutch Server (Nutch REST API)
- CVE-2026-1875 — Denial-of-Service (DoS) vulnerability in Ethernet function of MELSEC iQ-F Series EtherNet/IP module
- CVE-2026-11317 — Rockwell Automation Logix 5370 and 5570 Controllers Vulnerable To Denial of Service Via CIP
- CVE-2026-10069 — Shibby Tomato miniupnpd resource consumption
- CVE-2026-45174 — Idira Endpoint Privilege Manager Linux Agent: Potential bypass of Agent Daemon Initialization
- CVE-2026-4531 — Free5GC AMF handler.go HandleRegistrationComplete denial of service