{"id":"CVE-2026-105755","title":"vLLM is an inference and serving engine for large language models","summary":"vLLM is an inference and serving engine for large language models. Prior to 0.30.0, flash late-interaction scoring at the /score and /rerank endpoints derives each worker's query_key value from the caller-controlled X-Request-Id header. …","severity":"medium","cvss":4.2,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L","cwe":["CWE-639"],"vendor":"vllm-project","product":"vllm","affected":["vllm < 030.0"],"published":"2026-10-05","updated":"2026-10-05","sourceUpdated":"2026-10-05T23:17:02.167","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-105755","references":[{"url":"https://github.com/vllm-project/vllm/commit/ee17d0d869203ef9a35ad73358a4987bba14b1fc","label":"security-advisories@github.com"},{"url":"https://github.com/vllm-project/vllm/pull/51445","label":"security-advisories@github.com"},{"url":"https://github.com/vllm-project/vllm/releases/tag/v0.30.0","label":"security-advisories@github.com"},{"url":"https://github.com/vllm-project/vllm/security/advisories/GHSA-2phq-3phc-84px","label":"security-advisories@github.com"},{"url":"https://github.com/advisories/GHSA-2phq-3phc-84px"}],"tags":["nvd","cve.org","ghsa","pip"],"ingestedAt":"2026-10-05T23:36:21.156Z","aliases":["GHSA-2phq-3phc-84px"],"ecosystem":"pip","patched":["vllm 0.30.0"],"slug":"CVE-2026-105755","body":"## Overview\n\nvLLM is an inference and serving engine for large language models. Prior to 0.30.0, flash late-interaction scoring at the /score and /rerank endpoints derives each worker's query_key value from the caller-controlled X-Request-Id header. A concurrent request that reuses a victim's identifier can overwrite the cached query embedding so the victim's documents are scored against the attacker's query, and shared use counters can also cause a late-interaction cache-miss error. This issue is fixed in version 0.30.0.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.\n\n## Package advisory (CVE-2026-105755)\n\nAffected packages:\n\n- `vllm < 0.30.0`\n\nPatched in:\n\n- `vllm 0.30.0`\n\nSource: https://github.com/advisories/GHSA-2phq-3phc-84px","depth":"sunlit","depthScore":23,"depthScoreParts":{"impact":23.1,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}