CVE-2026-90878

A vulnerability was determined in vllm-project vLLM up to 0.27.1. This affects an unknown part of the file /v1/chat/completions of the component Jinja Template Rendering. This manipulation of the argument chat_template causes resource consumption. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. The pull request to fix this issue awaits acceptance.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-15 05:16

Updated : 2026-09-15 14:37


NVD link : CVE-2026-90878

Mitre link : CVE-2026-90878

CVE.ORG link : CVE-2026-90878


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption

CWE-404

Improper Resource Shutdown or Release