Количество 5
Количество 5
CVE-2026-25960
vLLM is an inference and serving engine for large language models (LLMs). The SSRF protection fix for CVE-2026-24779 add in 0.15.1 can be bypassed in the load_from_url_async method due to inconsistent URL parsing behavior between the validation layer and the actual HTTP client. The SSRF fix uses urllib3.util.parse_url() to validate and extract the hostname from user-provided URLs. However, load_from_url_async uses aiohttp for making the actual HTTP requests, and aiohttp internally uses the yarl library for URL parsing. This vulnerability in 0.17.0.
CVE-2026-25960
vLLM is an inference and serving engine for large language models (LLMs). The SSRF protection fix for CVE-2026-24779 add in 0.15.1 can be bypassed in the load_from_url_async method due to inconsistent URL parsing behavior between the validation layer and the actual HTTP client. The SSRF fix uses urllib3.util.parse_url() to validate and extract the hostname from user-provided URLs. However, load_from_url_async uses aiohttp for making the actual HTTP requests, and aiohttp internally uses the yarl library for URL parsing. This vulnerability in 0.17.0.
CVE-2026-25960
vLLM is an inference and serving engine for large language models (LLM ...
GHSA-v359-jj2v-j536
vLLM has SSRF Protection Bypass
BDU:2026-06585
Уязвимость функции load_from_url_async библиотеки для работы с большими языковыми моделями (LLM) vLLM, позволяющая нарушителю осуществить SSRF-атаку
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-25960 vLLM is an inference and serving engine for large language models (LLMs). The SSRF protection fix for CVE-2026-24779 add in 0.15.1 can be bypassed in the load_from_url_async method due to inconsistent URL parsing behavior between the validation layer and the actual HTTP client. The SSRF fix uses urllib3.util.parse_url() to validate and extract the hostname from user-provided URLs. However, load_from_url_async uses aiohttp for making the actual HTTP requests, and aiohttp internally uses the yarl library for URL parsing. This vulnerability in 0.17.0. | CVSS3: 7.1 | 1% Низкий | 5 месяцев назад | |
CVE-2026-25960 vLLM is an inference and serving engine for large language models (LLMs). The SSRF protection fix for CVE-2026-24779 add in 0.15.1 can be bypassed in the load_from_url_async method due to inconsistent URL parsing behavior between the validation layer and the actual HTTP client. The SSRF fix uses urllib3.util.parse_url() to validate and extract the hostname from user-provided URLs. However, load_from_url_async uses aiohttp for making the actual HTTP requests, and aiohttp internally uses the yarl library for URL parsing. This vulnerability in 0.17.0. | CVSS3: 7.1 | 1% Низкий | 5 месяцев назад | |
CVE-2026-25960 vLLM is an inference and serving engine for large language models (LLM ... | CVSS3: 7.1 | 1% Низкий | 5 месяцев назад | |
GHSA-v359-jj2v-j536 vLLM has SSRF Protection Bypass | CVSS3: 5.4 | 1% Низкий | 5 месяцев назад | |
BDU:2026-06585 Уязвимость функции load_from_url_async библиотеки для работы с большими языковыми моделями (LLM) vLLM, позволяющая нарушителю осуществить SSRF-атаку | CVSS3: 7.1 | 1% Низкий | 12 месяцев назад |
Уязвимостей на страницу