CVE-2025-57809

XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.21, XGrammar has an infinite recursion issue in the grammar. This issue has been resolved in version 0.1.21.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mlc-ai:xgrammar:*:*:*:*:*:*:*:*

History

09 Sep 2025, 18:57

Type Values Removed Values Added
CPE cpe:2.3:a:mlc-ai:xgrammar:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Mlc-ai xgrammar
Mlc-ai
References () https://github.com/mlc-ai/xgrammar/commit/b943feacb5a1caf4d39de8ec3bf7c7ce066dcee5 - () https://github.com/mlc-ai/xgrammar/commit/b943feacb5a1caf4d39de8ec3bf7c7ce066dcee5 - Patch
References () https://github.com/mlc-ai/xgrammar/issues/250 - () https://github.com/mlc-ai/xgrammar/issues/250 - Exploit, Issue Tracking
References () https://github.com/mlc-ai/xgrammar/security/advisories/GHSA-5cmr-4px5-23pc - () https://github.com/mlc-ai/xgrammar/security/advisories/GHSA-5cmr-4px5-23pc - Vendor Advisory

26 Aug 2025, 13:41

Type Values Removed Values Added
Summary
  • (es) XGrammar es una librería de código abierto para la generación de estructuras eficiente, flexible y portátil. Antes de la versión 0.1.21, XGrammar presentaba un problema de recursión infinita en la gramática. Este problema se ha resuelto en la versión 0.1.21.

25 Aug 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-25 22:15

Updated : 2025-09-09 18:57


NVD link : CVE-2025-57809

Mitre link : CVE-2025-57809

CVE.ORG link : CVE-2025-57809


JSON object : View

Products Affected

mlc-ai

  • xgrammar
CWE
CWE-674

Uncontrolled Recursion