Beveiligingsadvies

CVE-2026-15971

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-30 18:07:24
Laatst bijgewerkt 2026-07-31 19:28:45
Toegewezen door certcc
CVSS-score 9.8
Status PUBLISHED

Beschrijving

SGLang contains an RCE vulnerability when the optional dumper subsystem is enabled, allowing for a sandbox escape when DUMPER_SERVER_PORT is set, enabling code execution on inference requests.