Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-58446

Опубликовано: 06 сент. 2025
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer introduced in 0.1.23 processes large grammars (>100k characters) at very low rates, and can be used for DOS of model providers. This issue is fixed in version 0.1.24.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mlc-ai:xgrammar:0.1.23:*:*:*:*:*:*:*

EPSS

Процентиль: 24%
0.00081
Низкий

7.5 High

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 7.5
redhat
3 месяца назад

xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer introduced in 0.1.23 processes large grammars (>100k characters) at very low rates, and can be used for DOS of model providers. This issue is fixed in version 0.1.24.

github
3 месяца назад

xgrammar vulnerable to denial of service by huge enum grammar

EPSS

Процентиль: 24%
0.00081
Низкий

7.5 High

CVSS3

Дефекты

CWE-770