CVE-2026-5760
קריטית 9.8
תיאור (מקור, אנגלית)
SGLang's reranking endpoint (/v1/rerank) achieves Remote Code Execution (RCE) when a model file containing a malcious tokenizer.chat_template is loaded, as the Jinja2 chat templates are rendered using an unsandboxed jinja2.Environment().
מדדים
- CVSS 3.1
-
9.8 (CRITICAL)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 1% (אחוזון 100) נכון ל-29/7/2026
- CWE
- CWE-94
מוצרים מושפעים
lmsys: sglang
קישורים
- https://github.com/sgl-project/sglang/pull/23660 Issue TrackingPatch
- https://github.com/Stuub/SGLang-0.5.9-RCE ExploitThird Party Advisory
- https://www.kb.cert.org/vuls/id/915947 Third Party Advisory