CVE-2026-22778 | vllm-project vllm up to 0.14.0 Image log file (GHSA-4r2x-xpjr-7cvv / WID-SEC-2026-0287)
A vulnerability categorized as problematic has been discovered in vllm-project vllm up to 0.14.0. This issue affects some unknown processing of the component Image Handler. Such manipulation leads to sensitive information in log files.
This vulnerability is referenced as CVE-2026-22778. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.