A vulnerability was found in vllm-project vLLM up to 0.25.x . It has been rated as problematic . Affected by this issue is the function OnlineRenderer.preprocess_completion of the file vllm/renderers/online_renderer.py of the component Completion Request . This manipulation of the argument prompt causes resource consumption. The identification of this vulnerability is CVE-2026-73559 . It is possible to initiate the attack remotely. There is no exploit available. Upgrading the affected component