vLLM NIXL and Mooncake Flaws Let One Request Kill Decode Engines, With No Fixed Release Named
Five CVSS 8.7 denial-of-service CVEs hit vLLM's disaggregated serving connectors, and every fix pull request was still open on 3 October.
Tag archive
Coverage tagged vllm serving.
Five CVSS 8.7 denial-of-service CVEs hit vLLM's disaggregated serving connectors, and every fix pull request was still open on 3 October.
vLLM v0.30.0 adds DeepSeek-V4.1-Flash, GLM-5.3-Flash, Fast Start and HiSparse, and changes defaults that can break an upgrade. What to check.