{"data":{"id":"c084587f-b302-47d6-8d44-7bdb9da6c495","title":"CVE-2026-94623: vLLM through 0.29.0 contains a denial of service vulnerability in the NIXL connector's prefix caching implementation tha","summary":"vLLM versions up to 0.29.0 have a denial of service vulnerability in its NIXL connector's prefix caching (a feature that reuses parts of previously processed text to speed up responses) that doesn't properly check block counts when handling multiple prompts of different lengths in certain deployment setups. An attacker can crash the decode worker (the part that generates responses) by sending specially crafted requests, forcing a restart to restore service.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-94623","publishedAt":"2026-09-21T22:17:01.123Z","cveId":"CVE-2026-94623","cweIds":["CWE-617"],"cvssScore":"7.5","cvssSeverity":"high","severity":"high","attackType":["denial_of_service"],"issueType":"vulnerability","affectedPackages":null,"affectedVendors":[],"affectedVendorsRaw":["vLLM"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"network","attackComplexity":"low","privilegesRequired":"none","userInteraction":"none","exploitMaturity":"unknown","epssScore":0,"patchAvailable":null,"disclosureDate":"2026-09-21T22:17:01.123Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["availability"],"aiComponentTargeted":"inference","llmSpecific":true,"classifierConfidence":0.95,"researchCategory":null,"atlasIds":null}}