PatchSiren cyber security CVE debrief
CVE-2026-103241 vllm-project CVE debrief
A vulnerability was found in vllm-project vLLM up to 0.26.0, which affects unknown code in the Gemma4UnifiedParser component. This issue can lead to a denial of service and may be exploited remotely. The exploit has been published and can be used. Upgrading to version 0.29.1rc0 resolves this issue with patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9. Users of the affected component should upgrade.
- Vendor
- vllm-project
- Product
- vllm
- CVSS
- MEDIUM 6.9
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-09-30
- Original CVE updated
- 2026-10-07
- Advisory published
- 2026-09-30
- Advisory updated
- 2026-10-07
Who should care
Defenders responsible for systems using vllm-project vLLM up to 0.26.0 should assess exposure and prioritize upgrading to version 0.29.1rc0 or later. This includes operators, platform administrators, vulnerability management teams, and security teams who need to review and apply patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9 to mitigate the denial of service vulnerability.
Why it matters
CVE-2026-103241 is a denial of service vulnerability in vllm-project vLLM up to 0.26.0 that can be exploited remotely. Defenders should prioritize upgrading to version 0.29.1rc0 or later.
- Denial of service vulnerability requires verification of affected versions and exposure
- Remote exploitation is possible and requires monitoring
- Upgrading to version 0.29.1rc0 or later is advised to mitigate this vulnerability
Technical summary
The vulnerability affects unknown code in the Gemma4UnifiedParser component of vllm-project vLLM up to 0.26.0. A manipulation can lead to denial of service, and the attack may be launched remotely. The exploit has been published and may be used. Upgrading to version 0.29.1rc0 resolves this issue with patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9. The vulnerability requires verification of affected versions and exposure, and defenders should prioritize upgrading to version 0.29.1rc0 or later to mitigate this vulnerability.
Defensive priority
Defenders should prioritize upgrading to version 0.29.1rc0 or later to mitigate this vulnerability.
Recommended defensive actions
- Upgrade to version 0.29.1rc0 or later
- Review and apply patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9
- Monitor for remote exploitation attempts
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up
- Review compensating controls for exposed systems while remediation is scheduled and verified
- Check relevant monitoring, detection, and logs for exposed assets that need extra review
- Track exceptions, retest remediated assets, and close the item only after evidence is documented
Evidence notes
The vulnerability affects vllm-project vLLM up to 0.26.0. The exploit has been published and can be used. Upgrading to version 0.29.1rc0 is advised. Defenders should verify affected versions, exposure, and apply patch 3439bad37e68ba9755a46f4f6b44a4aeaf1f60a9. Evidence is limited, and further verification is required to confirm affected scope and severity.
Sources and references
Verified primary and authoritative sources
-
CVE-2026-103241 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2026-103241
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2026-103241 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2026-103241
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
PYSEC-2026-4186
Unverified legacy reference
URL: https://storage.googleapis.com/osv-vulnerabilities/PyPI/PYSEC-2026-4186.json
osv_dev
-
Source reference
Unverified legacy reference
URL: https://gist.github.com/Yunzez/8e98d656aa667095b513161eb056d28e
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://github.com/vllm-project/vllm/
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://github.com/vllm-project/vllm/releases/tag/v0.29.1rc0
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://vuldb.com/cve/CVE-2026-103241
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://vuldb.com/submit/956250
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://vuldb.com/vuln/411965
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://vuldb.com/vuln/411965/cti
Supplemental source
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.