Описание
A vulnerability was determined in vllm-project vLLM up to 0.27.1. This affects an unknown part of the file /v1/chat/completions of the component Jinja Template Rendering. This manipulation of the argument chat_template causes resource consumption. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. The pull request to fix this issue awaits acceptance.
EPSS
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
Связанные уязвимости
A flaw was found in vllm-project vLLM. A remote attacker could exploit a vulnerability in the Jinja Template Rendering component by manipulating the `chat_template` argument. This manipulation leads to excessive resource consumption, potentially causing a Denial of Service (DoS) condition for the affected system.
A vulnerability was determined in vllm-project vLLM up to 0.27.1. This ...
A vulnerability was determined in vllm-project vLLM up to 0.27.1. This affects an unknown part of the file /v1/chat/completions of the component Jinja Template Rendering. This manipulation of the argument chat_template causes resource consumption. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. The pull request to fix this issue awaits acceptance.
EPSS
4.3 Medium
CVSS3
4 Medium
CVSS2