
CVE@CVEnew
CVE-2026-93989 vLLM through 0.29.0 fails to properly validate bad_words token indices against the model's generation output width in SamplingParams.update_from_tokenizer(). Attacker… https://www.cve.org/CVERecord?id=CVE-2026-93989
00000501
58.1K followersView on X
