Unknown
nvd
·
CVE-2026-86793
CVE-2026-86793: SGLang allows unauthenticated pickle deserialization through /update_weights_from_tensor when no auth keys are configure
Published Sep 11, 2026
SGLang allows unauthenticated pickle deserialization through /update_weights_from_tensor when no auth keys are configured, and the SafeUnpickler policy can be bypassed because builtins.import and builtins.getattr are resolvable, enabling code execution via pickle REDUCE.
Affected AI Products
sglang