© 2025-2026 PySpect
First version without a known vulnerability: 0.5.12.post1
SGLang is Vulnerable to DoS via the data_hash Function
SGLang: Reachable Assertion via lora_path in LoRAManager enables remote Denial of Dervice
SGLang: Unauthenticated RCE via --enable-custom-logit-processor
SGLanG: Multimodal scheduler deserializes untrusted pickle data on 0.0.0.0 ROUTER socket
SGLang's multimodal generation runtime has an unauthenticated path traversal vulnerability
SGLang has an Improper Input Validation/Injection Issue
SGLangs `replay_request_dump.py` contains an insecure pickle.load() without validation and proper deserialization
Fixed in: 0.5.10
SGLang's encoder parallel disaggregation system is vulnerable to unauthenticated remote code execution through the disaggregation module
Fixed in: 0.5.10
SGLang's multimodal generation module is vulnerable to unauthenticated remote code execution through the ZMQ broker
Fixed in: 0.5.10
SGLang Remote Code Execution Vulnerability via Unsafe Deserialization in update_weights_from_tensor
Fixed in: 0.5.4