VDB
Sign up
—

PYSEC-2026-3996

Quick fix

PYSEC-2026-3996 — vllm: upgrade to the fixed version with the command below.

pip install --upgrade 'vllm>=0.30.0'

Details

vLLM through 0.29.0 fails to properly clean up decode-side metadata for rejected inference requests in prefill/decode disaggregated deployments. Remote attackers can submit requests with max_tokens=0 to exhaust decode-worker memory without bound until the worker restarts.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/vllm
Introduced in: 0Fixed in: 0.30.0
Fixpip install --upgrade 'vllm>=0.30.0'

References