THREAT OPS › Threat News › [NVD] CVE-2026-34756 (MEDIUM 6.5) — vLLM is an inference and serving engine for large language models (LLMs). From 0.1.0 to before 0.19.0, a Denial of Service vulnerability exists in the vLLM OpenAI-compatible API server. Due to the lack of an upper bound validation on the n parameter in the ChatCompletionRequest a
[NVD] CVE-2026-34756 (MEDIUM 6.5) — vLLM is an inference and serving engine for large language models (LLMs). From 0.1.0 to before 0.19.0, a Denial of Service vulnerability exists in the vLLM OpenAI-compatible API server. Due to the lack of an upper bound validation on the n parameter in the ChatCompletionRequest a
CVE-2026-34756 CVSS: 6.5 MEDIUM Published: 2026-04-06T16:16:36.610
vLLM is an inference and serving engine for large language models (LLMs). From 0.1.0 to before 0.19.0, a Denial of Service vulnerability exists in the vLLM OpenAI-compatible API server. Due to the lack of an upper bound validation on the n parameter in the ChatCompletionRequest and CompletionRequest Pydantic models, an unauthentic
Indicators of compromise
- CVE-2026-34756cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-34756