Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-93989— vLLM through 0.29.0 Cross-Request Logits Corruption via bad_words

Quick assessment

Affected
vllm-project vllm
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 0.29.0 及之前版本的 vLLM 中, 未能正确验证 中的词元索引是否与模型的生成输出宽度(output width)匹配。攻击者可以提供超出范围的词元索引,从而破坏并发请求的 logits 内存,导致正在处理中的不同 HTTP 请求返回错误的词元。

CVSS 3.1 · Low

Possible ATT&CK Techniques 1 AI

T1069 · Permission Groups Discovery
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-93989

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
vLLM through 0.29.0 Cross-Request Logits Corruption via bad_words
Source: CVE Program / CVE List V5
Vulnerability Description
vLLM through 0.29.0 fails to properly validate bad_words token indices against the model's generation output width in SamplingParams.update_from_tokenizer(). Attackers can supply out-of-bounds token indices that corrupt logits memory of concurrent requests, causing different in-flight HTTP requests to return incorrect tokens.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
对数组索引的验证不恰当
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
vllm-project vllm 0 ~ 0.29.0 -

II. Public POCs for CVE-2026-93989

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-93989

登录查看更多情报信息。

Patches & Fixes for CVE-2026-93989 (1)

Vendor Advisories for CVE-2026-93989 (1)

Proof of Concept for CVE-2026-93989 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-93989

No comments yet


Leave a comment