CVE-2026-94626 | vllm-project vLLM up to 0.29.0 Completion Endpoint kv_transfer_params tp_size allocation of resources
A vulnerability, which was classified as problematic, was found in vllm-project vLLM up to 0.29.0. The affected element is the function kv_transfer_params of the component Completion Endpoint. Such manipulation of the argument tp_size leads to allocation of resources.
This vulnerability is documented as CVE-2026-94626. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More