VulnWatch VulnWatch
← Back to dashboard
Unknown nvd · CVE-2026-15977

CVE-2026-15977: SGLang contains a credential leakage vulnerability in the /server_info endpoint, which will return API keys and SSL keyf

Published Jul 30, 2026

SGLang contains a credential leakage vulnerability in the /server_info endpoint, which will return API keys and SSL keyfile information when only the --admin-api-key is configured.

Affected AI Products

sglang
Get the weekly digest. Every Monday: top AI security stories of the week. Free.