Externally Controlled Reference to a Resource in Another Sphere in vLLM - CVE-2026-54232

 

Externally Controlled Reference to a Resource in Another Sphere in vLLM - CVE-2026-54232

Published: June 9, 2026


Vulnerability identifier: #VU134020
CSH Severity: High
CVSS v4: 8.4 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-54232
CWE-ID: CWE-610
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to execute arbitrary code.

The vulnerability exists due to improper control of package resolution in docker/Dockerfile when building the Docker image with dependency installation from multiple package indexes. A remote attacker can publish a malicious package with the expected name and version on PyPI to execute arbitrary code.

User interaction is required to build the affected Docker image.


Affected software

vLLM

How to mitigate CVE-2026-54232

Install security update from vendor's website.

vLLM - update to 0.22.1

External References

Related Security Bulletins