CVE-2026-93592: Vllm

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

vLLM versions before 0.28.0 fail to validate the lower bound of token IDs in the /v1/embeddings and /pooling endpoints, allowing unauthenticated attackers to crash the engine by submitting negative token IDs. A single request with a negative token ID triggers a CUDA device-side assertion that poisons the GPU context, causing all subsequent requests to fail until the process restarts.

Affected products

  • Vllm Vllm: before 0.28.0 (fixed in 0.28.0)

Published 2026-09-18. Last modified 2026-09-28.