CVE-2026-100650: vLLM through 0.29.0 fetches and fully materializes remote or inline media before enforcing its documented media controls
Summary
vLLM versions up to 0.29.0 have a security flaw where it downloads and processes media files (like audio) completely before checking size limits, allowing attackers to cause denial of service (making the server unavailable) by sending extremely large files that exhaust memory and bandwidth. The flaw affects multiple entry points, including an unauthenticated route in the Rust frontend, though there is no risk of code execution or data theft.
Vulnerability Details
6.5(medium)
EPSS: 0.0%
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
network
low
low
none
September 26, 2026
Classification
Affected Vendors
Related Issues
CVE-2026-47482: NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause missing release of memory
CVE-2022-29200: TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-100650
First tracked: September 26, 2026 at 02:08 PM
Classified by LLM (prompt v3) · confidence: 95%