
CVE-2025-47277: Remote Code Execution Vulnerability in vLLM Project
WebSecurity
CVE-2025-47277 is a remote code execution (RCE) vulnerability in the vLLM project. This flaw is related to pickle deserialization in PyNcclPipe. The specific technical details mentioned include the use of pickle deserialization, which can be exploited to execute arbitrary code. The described impacts include the possibility for an attacker to execute code remotely on affected systems.