Количество 2
Количество 2
CVE-2026-7304
3 месяца назад
SGLangs multimodal generation runtime is vulnerable to unauthenticated remote code execution when the --enable-custom-logit-processor option is enabled, as Python objects loaded via dill.loads() will be deserialized without validation.
CVSS3: 9.8
EPSS: Низкий
GHSA-36m8-w8qf-g76p
3 месяца назад
SGLang: Unauthenticated RCE via --enable-custom-logit-processor
CVSS3: 9.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-7304 SGLangs multimodal generation runtime is vulnerable to unauthenticated remote code execution when the --enable-custom-logit-processor option is enabled, as Python objects loaded via dill.loads() will be deserialized without validation. | CVSS3: 9.8 | 1% Низкий | 3 месяца назад | |
GHSA-36m8-w8qf-g76p SGLang: Unauthenticated RCE via --enable-custom-logit-processor | CVSS3: 9.8 | 1% Низкий | 3 месяца назад |
Уязвимостей на страницу
20