Database/AI/ML frameworks & serving
vLLM (multi-node ZeroMQ): Secondary vLLM host trusts unauthenticated ZeroMQ messages
CVE-2025-30165AI/ML frameworks & servingcurated
Impact
Secondary vLLM host trusts unauthenticated ZeroMQ messages
Who can reach it
Co-tenant or compromised worker on the multi-node deployment
What to do
Upgrade; enforce mTLS or a private VRF for intra-job traffic
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.