← Terug naar overzicht

CVE-2026-52130 affects llama.cpp versions up to and including build b5693. The vulnerability exists in the file common/json-schema-to-grammar.cpp and is classified as Uncontrolled Recursion. Exploitation of this vulnerability can result in a denial of service condition. The issue is tracked in the NVD and has been documented with a blog post and the official llama.cpp GitHub repository. llama.cpp is a widely used open-source library for running large language models locally. The vulnerability could be triggered by crafted input that causes unbounded recursive function calls, exhausting stack resources. Users are advised to update to a version beyond b5693 to mitigate the risk.

Affected products

  • llama.cpp b5693 and before

Related CVE's

  • CVE-2026-52130

Categories

  • Emerging Technologies
  • Security Tools