๐Ÿ” CVE Alert

CVE-2026-5760

CRITICAL 9.8

CVE-2026-5760

CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th

SGLang's reranking endpoint (/v1/rerank) achieves Remote Code Execution (RCE) when a model file containing a malcious tokenizer.chat_template is loaded, as the Jinja2 chat templates are rendered using an unsandboxed jinja2.Environment().

Vendor sglang
Product sglang
Published Apr 20, 2026
Last Updated Apr 20, 2026
Stay Ahead of the Next One

Get instant alerts for sglang sglang

Be the first to know when new critical vulnerabilities affecting sglang sglang are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

SGLang / SGLang
0.59

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/Stuub/SGLang-0.5.9-RCE kb.cert.org: https://www.kb.cert.org/vuls/id/915947