MLC AI maintains a focused set of machine-learning compilation and inference tools, with its vulnerability footprint centered on the xgrammar product for structured generation. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mlc Ai over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-25048HIGH xgrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.32, the multi-level nested syntax caused a segmentation fault ( | Mar 5, 2026 | 7.5 | 27 | NO | NO |
CVE-2025-58446HIGH xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer introduced in 0.1.23 processes large grammars (>100k characters) | Sep 6, 2025 | 7.5 | 25 | NO | NO |
CVE-2025-57809HIGH XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.21, XGrammar has an infinite recursion issue in the grammar. Th | Aug 25, 2025 | 7.5 | 25 | NO | NO |
CVE-2025-32381MEDIUM XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to 0.1.18, Xgrammar includes a cache for compiled grammars to increase perform | Apr 9, 2025 | 6.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mlc Ai.
Media articles that mention a CVE ID that affects a product developed by Mlc Ai — matched by CVE ID, not by vendor name.