CRITICAL🇵🇱 Wersja polska

CVE-2026-7302

CVSS 9.1v3.1pub. 2026-05-18upd. 2026-05-19

SGLangs multimodal generation runtime is vulnerable to an unauthenticated path traversal vulnerability, allowing an attacker to write arbitrary files anywhere the server process has write access, by including ../ sequences in the upload filename when sent to specific endpoints.

🤖 AI Analysis
How it works

The vulnerability results from improper sanitization of the filename submitted by the user to specific server endpoints. The attacker places '../' sequences in the uploaded filename, allowing escape from the intended target directory. As a result, the file can be written to any location in the file system to which the server process has write permissions — without requiring any authentication.

Impact

An attacker can write arbitrary files to unauthorized locations on the server, enabling overwriting of critical configuration files, deployment of malicious code, or destabilization of system operations. The vulnerability directly threatens server integrity and availability.

Mitigation & patch

Apply patches available from the vendor according to the references. As a temporary workaround, it is recommended to restrict network access to SGLang endpoints exclusively to trusted hosts and run the server process with minimal write permissions in the file system.

Who is affected

Lmsys SGLang — versions indicated in vendor references

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
  • Lmsys Sglang

    APP
    Lmsys
    0.5.10
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Path Traversal
CWE
References

Related vulnerabilities

CVE-2026-15976CRITICAL9.8PL ✓same product

RCE przez niebezpieczną deserializację pickle w SGLang (ładowanie wag modeli)

CVE-2026-15969CRITICAL9.8PL ✓same product

SGLang: nieuwierzytelnione RCE przez podatność deserializacji pickle

CVE-2026-15971CRITICAL9.8PL ✓same product

RCE w SGLang — ucieczka z sandbox przez podsystem dumper

CVE-2026-14890CRITICAL9.1PL ✓same product

SGLang: nieuwierzytelnione RCE przez deserializację pickle w ZeroMQ

CVE-2026-7301CRITICAL9.8PL ✓same product

RCE w SGLang przez niebezpieczną deserializację pickle na gnieździe ROUTER