Loading market data...
← Back to CVE feed

CVE-2026-93840

LOW CVSS 3.7 View on NVD ↗

Description

vLLM before 0.29.0 validates allowed_token_ids against tokenizer length instead of model output logits width in SamplingParams._validate_allowed_token_ids(). Attackers can supply token IDs above the output vocabulary that pass validation, causing LogitBiasState to corrupt GPU logits state and allow concurrent requests to sample tokens outside their allowlists.

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Published: Sep 18, 2026 20:17 UTC Modified: Sep 18, 2026 20:17 UTC