VYPR

Xgrammar

by Mlc AI

pypi: xgrammar

CVEs (4)

  • CVE-2025-32381MedApr 9, 2025
    risk 0.35cvss 6.5epss 0.00

    XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to 0.1.18, Xgrammar includes a cache for compiled grammars to increase performance with repeated use of the same grammar. This cache is held in memory. Since the cache is…

  • CVE-2026-25048Mar 5, 2026
    risk 0.00cvss epss 0.01

    xgrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.32, the multi-level nested syntax caused a segmentation fault (core dumped). This issue has been patched in version 0.1.32.

  • CVE-2025-58446Sep 6, 2025
    risk 0.00cvss epss 0.01

    xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer introduced in 0.1.23 processes large grammars (>100k characters) at very low rates, and can be used for DOS of model providers. This issue is fixed in version…

  • CVE-2025-57809Aug 25, 2025
    risk 0.00cvss epss 0.00

    XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.21, XGrammar has an infinite recursion issue in the grammar. This issue has been resolved in version 0.1.21.