Vendor
medium
advisory
Denial of Service Vulnerability in vLLM
1 TTP 1 CVEAn authenticated remote attacker can exploit a vulnerability in vLLM to trigger a Denial of Service condition, likely through resource exhaustion.
vLLM
denial-of-service
cve-2024-53676
availability
1t
1c
updated
low
advisory
vLLM Denial of Service Vulnerability via M-RoPE Prompt Embeds (CVE-2026-55514)
1 TTP 1 CVEA denial of service vulnerability, CVE-2026-55514, exists in vLLM versions from 0.12.0 up to, but not including, 0.24.0, allowing an authorized remote user to send a specially crafted `/v1/completions` request that leverages pure prompt embeds with an M-RoPE-enabled model to trigger an assertion failure, causing the vLLM server application to fatally crash.
vLLM
denial-of-service
large-language-model
cve
1t
1c