Skip to content

[Installation]: Regarding unsafe use of pickle #50309

Description

@billetdoux

Your current environment

Can you please confirm CVE-2024-1041 was solved? Sonatype is blocking all versions of vLLM saying that unsafe pickle.load calls are still there.

How you are installing vllm

pip install -vvv vllm

Before submitting a new issue...

  • Make sure you already searched for relevant issues, and asked the chatbot living at the bottom right corner of the documentation page, which can answer lots of frequently asked questions.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions