VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews ยท rss_38ca87f844e3f51af8a6fe736deec365

SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model Files

Published Apr 20, 2026
A critical security vulnerability has been disclosed in SGLang that, if successfully exploited, could result in remote code execution on susceptible systems. The vulnerability, tracked as CVE-2026-5760, carries a CVSS score of 9.8 out of 10.0. It has been described as a case of command injection leading to the execution of arbitrary code. SGLang is a high-performance, open-source serving

Affected AI Products

sglang