<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 01:01:13 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-377245</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-377245</link>
      <description>EUVD-2026-377245</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-377245</guid>
    </item>
    <item>
      <title>fkie_cve-2026-100649</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-100649</link>
      <description>&lt;p&gt;vLLM before 0.29.0 contains a resource-limit bypass vulnerability in PyNvVideoCodec decoder allocation where sampler subclass shadowing allows independent counter increments. Unauthenticated attackers can select different sampler subclasses in video requests to exceed configured decoder limits and exhaust unaccounted GPU memory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;vLLM before 0.29.0 contains a resource-limit bypass vulnerability in PyNvVideoCodec decoder allocation where sampler subclass shadowing allows independent counter increments. Unauthenticated attackers can select different sampler subclasses in video requests to exceed configured decoder limits and exhaust unaccounted GPU memory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-100649</guid>
    </item>
    <item>
      <title>GHSA-hf74-6fwg-ghj7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-hf74-6fwg-ghj7</link>
      <description>&lt;p&gt;vLLM before 0.29.0 contains a resource-limit bypass vulnerability in PyNvVideoCodec decoder allocation where sampler subclass shadowing allows independent counter increments. Unauthenticated attackers can select different sampler subclasses in video requests to exceed configured decoder limits and exhaust unaccounted GPU memory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;vLLM before 0.29.0 contains a resource-limit bypass vulnerability in PyNvVideoCodec decoder allocation where sampler subclass shadowing allows independent counter increments. Unauthenticated attackers can select different sampler subclasses in video requests to exceed configured decoder limits and exhaust unaccounted GPU memory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-hf74-6fwg-ghj7</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-3327 — vllm: Mehrere Schwachstellen ermöglichen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3327</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in vllm ausnutzen, um Sicherheitsvorkehrungen zu umgehen, Daten zu manipulieren, sensible Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in vllm ausnutzen, um Sicherheitsvorkehrungen zu umgehen, Daten zu manipulieren, sensible Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3327</guid>
    </item>
  </channel>
</rss>
