pypi:vllmThis dossier links the stable identity pypi:vllm to 3 exact observed versions across 3 public repositories.
A package identity or provider interface in published code does not prove configuration, an account, procurement, data transfer or an API call.
ecosystem:name + exact version + evidence pathPublication age and licenses come from deps.dev metadata. They are context—not a maintenance, legal or portability verdict.
03 May 202521 Aug 202504 Oct 2025uba-ki-lab/coding-agent-usage-simulationuv.lockuba-ki-lab/llm-questionnaire-benchmarking-frameworkuv.lockuba-ki-lab/llm-testframeworkuv.lockvLLM affected by RCE via auto_map dynamic module loading during model initialization
10 Sept 2026vLLM is vulnerable to Server-Side Request Forgery (SSRF) through `MediaConnector` class
10 Sept 2026vLLM: Unauthenticated OOM Denial of Service via Unbounded `n` Parameter in OpenAI API Server
10 Sept 2026vLLM's Artifact Pin Decay allows pinned deployments to load unpinned code, weights, and processors
10 Sept 2026vLLM: ReDoS via structured_outputs.regex in the lm-format-enforcer backend (no compile timeout) — missed sibling of GHSA-rwxx-mrjm-wc2m
10 Sept 2026vLLM: SSRF + arbitrary local file read in MiMoV2OmniMultiModalProcessor `_fetch_image` and audio loader bypass MediaConnector protections
10 Sept 2026Potential Timing Side-Channel Vulnerability in vLLM’s Chunk-Based Prefix Caching
07 Aug 2026vLLM has RCE In Video Processing
10 Sept 2026vLLM: GGUF dequantize kernel int truncation exposes uninitialized GPU memory in multi-tenant serving
10 Sept 2026vLLM vulnerable to DoS via large Chat Completion or Tokenization requests with specially crafted `chat_template_kwargs`
10 Sept 2026vLLM: Processing differential in multi-channel audio downmixing enables hidden-input/moderation bypass for audio models
17 Jul 2026vLLM: Resource-Exhaustion (DoS) through Malicious Jinja Template in OpenAI-Compatible Server
10 Sept 2026vLLM: OOM Denial of Service via Audio Decompression Bomb
10 Sept 2026vLLM DOS: Remotely kill vllm over http with invalid JSON schema
07 Aug 2026vLLM has Hardcoded Trust Override in Model Files Enables RCE Despite Explicit User Opt-Out
10 Sept 2026vLLM: temperature=NaN and temperature=Infinity bypass validation and propagate to GPU kernels
10 Sept 2026vLLM: Cross-User Data Leak Vulnerability
10 Sept 2026vLLM: Derender endpoints decode caller-supplied GenerateResponse token IDs without output bounds
10 Sept 2026vLLM vulnerable to remote code execution via transformers_utils/get_config
17 Jul 2026vLLM: image EXIF Rotation & PNG tRNS Transparency Not Normalized, Causing Mismatch Between Model Input and Expectations
10 Sept 2026vLLM: Request-selected PyNvVideoCodec GPU decode bypasses static VRAM reservation
17 Sept 2026vLLM: OpenAI auth bypass
10 Sept 2026vllm has Improper Resource Shutdown or Release
13 Jul 2026vLLM allows clients to crash the openai server with invalid regex
07 Aug 2026Remote Code Execution Vulnerability in vLLM Multi-Node Cluster Configuration
07 Aug 2026vLLM has a Weakness in MultiModalHasher Image Hashing Implementation
07 Aug 2026vLLM is vulnerable to DoS in Idefics3 vision models via image payload with ambiguous dimensions
10 Sept 2026vLLM: Unauthenticated audio decompression-bomb DoS in /v1/chat/completions
17 Sept 2026vLLM: incomplete CVE-2026-22778 fix leaks PIL repr addresses via Anthropic router
10 Sept 2026vLLM Vulnerable to Remote DoS via Special-Token Placeholders
10 Sept 2026vLLM: Unauthenticated Internal Path and Username Disclosure via Validation Error Messages
10 Sept 2026vLLM vulnerable to Regular Expression Denial of Service
07 Aug 2026vLLM introduced enhanced protection for CVE-2025-62164
11 Sept 2026vLLM deserialization vulnerability leading to DoS and potential RCE
10 Sept 2026vLLM vulnerable to DoS with incorrect shape of multimodal embedding inputs
10 Sept 2026vLLM: Denial of Service via Unbounded Frame Count in video/jpeg Base64 Processing
10 Sept 2026vLLM: Security Check Bypass via assert Statement in Activation Function Loading Allows Arbitrary Code Execution
10 Sept 2026vLLM vulnerable to Server-Side Request Forgery (SSRF) through MediaConnector
10 Sept 2026vLLM: ReDoS via structured_outputs.regex compiled without timeout in xgrammar and outlines backends
10 Sept 2026vllm API endpoints vulnerable to Denial of Service Attacks
10 Sept 2026vLLM Tool Schema allows DoS via Malformed pattern and type Fields
07 Aug 2026vLLM has a Regular Expression Denial of Service (ReDoS, Exponential Complexity) Vulnerability in `pythonic_tool_parser.py`
07 Aug 2026vLLM is vulnerable to an Out-of-Memory (OOM) Denial of Service (DoS) attack due to unbounded frame count processing in the `VideoMediaIO.load_base64()` method
19 Aug 2026vLLM is vulnerable to timing attack at bearer auth
10 Sept 2026vLLM makes Use of Uninitialized Resource
10 Sept 2026Not reported
26 Jun 2026Not reported
17 Sept 2026Not reported
29 Sept 2026Only exact npm and PyPI tuples are enriched. Reported SPDX expressions are metadata; no compatibility, obligation or legal conclusion is inferred.
Retrieval, parsing, matching and publishing use no generative AI model.i6eal (2026): vLLM — exact AI dependency evidence dossier, data state 30 Sept 2026. https://i6eal.de/en/tools/ki-abhaengigkeitsatlas/paket/vllm-571f04fc/
We build source-backed data products with stable identities, reproducible joins and boundaries that remain visible.
These tools cover related ground.