CVE-2026-105922
Undergoing Analysis Undergoing Analysis - In Progress

Denial of Service in vLLM up to 0.31.0

Vulnerability report for CVE-2026-105922, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-06

Last updated on: 2026-10-06

Assigner: VulDB

Description

A security flaw has been discovered in vllm-project vLLM up to 0.31.0. This impacts the function get_token_bin_counts_and_mask of the file vllm/model_executor/layers/utils.py of the component Penalty Handler. Performing a manipulation results in denial of service. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-06
Last Modified
2026-10-06
Generated
2026-10-06
AI Q&A
2026-10-06
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 31 associated CPEs
Vendor Product Version / Range
vllm-project vLLM 0.20
vllm-project vLLM 0.21
vllm-project vLLM 0.22
vllm-project vLLM 0.23
vllm-project vLLM 0.24
vllm-project vLLM 0.25
vllm-project vLLM 0.26
vllm-project vLLM 0.27
vllm-project vLLM 0.28
vllm-project vLLM 0.29
vllm-project vLLM 0.30
vllm-project vLLM 0.31.0
vllm-project vLLM 0.1
vllm-project vLLM 0.2
vllm-project vLLM 0.3
vllm-project vLLM 0.4
vllm-project vLLM 0.5
vllm-project vLLM 0.6
vllm-project vLLM 0.7
vllm-project vLLM 0.8
vllm-project vLLM 0.9
vllm-project vLLM 0.10
vllm-project vLLM 0.11
vllm-project vLLM 0.12
vllm-project vLLM 0.13
vllm-project vLLM 0.14
vllm-project vLLM 0.15
vllm-project vLLM 0.16
vllm-project vLLM 0.17
vllm-project vLLM 0.18
vllm-project vLLM 0.19

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-404 The product does not release or incorrectly releases a resource before it is made available for re-use.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is a denial of service flaw in vLLM versions up to 0.31.0. It exists in the Penalty Handler component, specifically in the get_token_bin_counts_and_mask function of vllm/model_executor/layers/utils.py. Attackers can exploit this by manipulating inputs to cause system disruption.

Impact Analysis

If you use vLLM up to 0.31.0, an attacker could remotely trigger this flaw to make your system unresponsive or crash. Since exploit code is public, the risk of attack is higher. The impact is limited to availability disruption.

Mitigation Strategies

Immediately upgrade vLLM to a version beyond 0.31.0 to address the flaw in the Penalty Handler component. If upgrading is not possible, disable the affected function or restrict network access to the vulnerable system until a patch is applied.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-105922. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart