Threats Tagged 'cve-2026-73555'
View all threats tagged with 'cve-2026-73555'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-73555'
Click on any threat for detailed analysis and mitigation recommendations
0 vLLM versions prior to 0.26.0 have a vulnerability where malformed API requests cause error messages to leak sensitive internal information such as file paths, line numbers, OS username, home directory, Python version, and internal package structure. This occurs because the error handler converts validation exceptions to strings that include traceback details, which are insufficiently sanitized before being returned in HTTP responses. This information disclosure can aid attackers in fingerprinting the environment and crafting targeted exploits. The issue affects all POST endpoints accepting JSON bodies. A fix is available in vLLM 0.26.0 that changes the error handling to avoid leaking such details. Join the discussion | CVE Database V5 | 09/04/2026, 21:36:33 UTC Added: 08/13/2026, 15:12:13 UTC |
Showing 1 to 1 of 1 result