ThreatCluster

Critical RCE and Path Traversal Vulnerabilities Found in SGLang Framework

First seen 18 May 2026, 11:20 UTC Kb.Certantiproof.aiwww.cve.org 88% similarity 69

Article Content

Browse articles
ThreatCluster

Three vulnerabilities have been identified in the SGLang framework, including two remote code execution (RCE) vulnerabilities and one path traversal vulnerability. These flaws allow unauthenticated attackers to execute arbitrary code or write files on affected systems. The vulnerabilities are tracked as CVE-2026-7301, CVE-2026-7302, and CVE-2026-7304, all published on 2026-05-18. Exploitation requires network access to the SGLang service, particularly when the multimodal generation mode is enabled. No patches are currently available, and the maintainers have not responded to disclosure attempts. The vulnerabilities stem from unsafe deserialization and improper handling of file uploads. Deployments exposing the affected interfaces to untrusted networks are at the highest risk. Security professionals are advised to monitor their systems closely until a patch is released.

Key Points: • Three critical vulnerabilities in SGLang allow RCE and path traversal attacks. • CVE-2026-7301 and CVE-2026-7304 enable RCE via unsafe deserialization. • No patches are available, and affected users should implement mitigations.

ThreatCluster AI

Timeline

2026-03-12
CVE-2026-3059 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-03-12
CVE-2026-3060 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-18
CVE-2026-7301 published
RCE vulnerability in SGLang's multimodal generation runtime scheduler due to unsafe deserialization.
Kb.Cert
2026-05-18
CVE-2026-7302 published
Path traversal vulnerability allowing arbitrary file writes via unsanitized upload filenames.
Kb.Cert
2026-05-18
CVE-2026-7304 published
RCE vulnerability when using the --enable-custom-logit-processor option due to unsafe deserialization.
Kb.Cert
2026-05-18
Vulnerabilities disclosed
Antiproof disclosed three vulnerabilities to SGLang and coordinated with CERT/CC.
antiproof.ai

Community

Browse all →