Externally Controlled Reference to a Resource in Another Sphere in vLLM - #VU134020

 

Externally Controlled Reference to a Resource in Another Sphere in vLLM - #VU134020

Published: June 9, 2026


Vulnerability identifier: #VU134020
CSH Severity: High
CVSS v4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber
CVE-ID: N/A
CWE-ID: CWE-610
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor: vLLM
Affected software:
vLLM

Detailed vulnerability description

The vulnerability allows a remote attacker to execute arbitrary code.

The vulnerability exists due to improper control of package resolution in docker/Dockerfile when building the Docker image with dependency installation from multiple package indexes. A remote attacker can publish a malicious package with the expected name and version on PyPI to execute arbitrary code.

User interaction is required to build the affected Docker image.


Remediation

Install security update from vendor's website.

Sources