—
PYSEC-2026-3997
Quick fix
PYSEC-2026-3997 — vllm: upgrade to the fixed version with the command below.
pip install --upgrade 'vllm>=0.28.0'Details
vLLM versions before 0.28.0 fail to validate the lower bound of token IDs in the /v1/embeddings and /pooling endpoints, allowing unauthenticated attackers to crash the engine by submitting negative token IDs. A single request with a negative token ID triggers a CUDA device-side assertion that poisons the GPU context, causing all subsequent requests to fail until the process restarts.
Are you affected?
Enter the version of the package you're using.