lmcache
LMCache: Supercharge Your LLM with the Fastest KV Cache Layer
Activity
- Latest release
- 2d ago
- Total releases
- 59
- Cadence
- ~4 days
- Last 12 months
- 50
Reach
- Stars
- 11.8k
Details
- License
- Apache-2.0
- First release
- May 28, 2025
| Version | Released | |
|---|---|---|
0.5.5
patch
| ||
0.5.5rc7
pre
| ||
0.5.5rc6
pre
| ||
0.5.5rc6.dev17
pre
| ||
0.5.5rc5
pre
| ||
0.5.5rc4
pre
| ||
0.5.5rc3
pre
| ||
0.5.5rc2
pre
| ||
0.5.5rc1
pre
| ||
0.5.4
patch
| ||
0.5.4rc5
pre
| ||
0.5.4rc4
pre
| ||
0.5.4rc3
pre
| ||
0.5.4rc2
pre
| ||
0.5.4rc1
pre
| ||
0.5.3
patch
| ||
0.5.3rc4
pre
| ||
0.5.3rc3
pre
| ||
0.5.3rc3.dev6
pre
| ||
0.5.3rc2
pre
| ||
0.5.3rc1
pre
| ||
0.5.2
patch
| ||
0.5.2rc1
pre
| ||
0.5.1
patch
| ||
0.5.1rc2
pre
| ||
0.5.1rc1
pre
| ||
0.5.0
minor
| ||
0.5.0rc1
pre
| ||
0.4.8rc4
pre
| ||
0.4.8.dev42
pre
| ||
0.4.8rc3
pre
| ||
0.4.8.dev38
pre
| ||
0.4.7
patch
| ||
0.4.6
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.4.5
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.4.4
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.4.3
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.4.2
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.4.1
minor
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.15
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.14
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.13
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.12
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.11
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.10.post2
pre
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.10.post1
pre
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.10
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.9.post2
pre
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.9.post1
pre
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev | ||
0.3.9
patch
1 CVE
CVE-2026-10813
PYSEC-2026-3480
GHSA-3hh9-752g-5g22
Jul 23, 2026
LMCache: 16-bit multimodal hash collision can poison KV cache entries
Medium
Local
High
Low
None
A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the file lmcache/integration/vllm/utils.py of the component KV Cache Handler. Executing a manipulation can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. It is indicated that the exploitability is difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Affected versions
0.3.0
0.3.1
0.3.1.post1
0.3.10
0.3.10.post1
0.3.10.post2
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.2
+ 14 more Show less
0.3.3
0.3.4
0.3.5
0.3.6
0.3.7
0.3.9
0.3.9.post1
0.3.9.post2
0.4.1
0.4.2
0.4.3
0.4.4
0.4.5
0.4.6
References Updated Jul 23, 2026 · Source: OSV.dev |