PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-103241 vllm-project CVE debrief

A vulnerability was found in vllm-project vLLM up to 0.26.0, which affects unknown code in the Gemma4UnifiedParser component. This issue can lead to a denial of service and may be exploited remotely. The exploit has been published and can be used. Upgrading to version 0.29.1rc0 resolves this issue with patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9. Users of the affected component should upgrade.

Vendor
vllm-project
Product
vllm
CVSS
MEDIUM 6.9
CISA KEV
Not listed in stored evidence
Original CVE published
2026-09-30
Original CVE updated
2026-10-07
Advisory published
2026-09-30
Advisory updated
2026-10-07

Who should care

Defenders responsible for systems using vllm-project vLLM up to 0.26.0 should assess exposure and prioritize upgrading to version 0.29.1rc0 or later. This includes operators, platform administrators, vulnerability management teams, and security teams who need to review and apply patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9 to mitigate the denial of service vulnerability.

Why it matters

CVE-2026-103241 is a denial of service vulnerability in vllm-project vLLM up to 0.26.0 that can be exploited remotely. Defenders should prioritize upgrading to version 0.29.1rc0 or later.

  • Denial of service vulnerability requires verification of affected versions and exposure
  • Remote exploitation is possible and requires monitoring
  • Upgrading to version 0.29.1rc0 or later is advised to mitigate this vulnerability

Technical summary

The vulnerability affects unknown code in the Gemma4UnifiedParser component of vllm-project vLLM up to 0.26.0. A manipulation can lead to denial of service, and the attack may be launched remotely. The exploit has been published and may be used. Upgrading to version 0.29.1rc0 resolves this issue with patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9. The vulnerability requires verification of affected versions and exposure, and defenders should prioritize upgrading to version 0.29.1rc0 or later to mitigate this vulnerability.

Defensive priority

Defenders should prioritize upgrading to version 0.29.1rc0 or later to mitigate this vulnerability.

Recommended defensive actions

  • Upgrade to version 0.29.1rc0 or later
  • Review and apply patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9
  • Monitor for remote exploitation attempts
  • Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up
  • Review compensating controls for exposed systems while remediation is scheduled and verified
  • Check relevant monitoring, detection, and logs for exposed assets that need extra review
  • Track exceptions, retest remediated assets, and close the item only after evidence is documented

Evidence notes

The vulnerability affects vllm-project vLLM up to 0.26.0. The exploit has been published and can be used. Upgrading to version 0.29.1rc0 is advised. Defenders should verify affected versions, exposure, and apply patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9. Evidence is limited, and further verification is required to confirm affected scope and severity.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-103241 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-103241

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-103241 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-103241

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • PYSEC-2026-4186

    Unverified legacy reference

    URL: https://storage.googleapis.com/osv-vulnerabilities/PyPI/PYSEC-2026-4186.json

    osv_dev

  • Source reference

    Unverified legacy reference

    URL: https://gist.github.com/Yunzez/8e98d656aa667095b513161eb056d28e

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://github.com/vllm-project/vllm/

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://github.com/vllm-project/vllm/releases/tag/v0.29.1rc0

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://vuldb.com/cve/CVE-2026-103241

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://vuldb.com/submit/956250

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://vuldb.com/vuln/411965

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://vuldb.com/vuln/411965/cti

    Supplemental source

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.