CVE-2026-3060
SGLang' encoder parallel disaggregation system is vulnerable to unauthenticated remote code execution through the disaggregation module, which deserializes untrusted data using pickle.loads() without authentication.
CVSS
- Version: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Base score: 9.8
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 1.35%
- Percentile among all scored CVEs: 71
- Score date: 10/6/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
🎯 ATT&CK techniques
How this vulnerability is exploited and what the attacker gains, in MITRE ATT&CK terms.
- Exploitation
T1190Exploit Public-Facing Applicationinitial access85 % - Primary impact
T1059Command and Scripting Interpreterexecution90 %
Vector CVSS (AV:N/AC:L/PR:N/UI:N) indica acceso remoto sin privilegios ni interacción. CWE-502 (deserialización insegura con pickle) permite RCE. Impacto T1059 por ejecución de código arbitrario en el servidor.
Inferred by our analysis agent from the official description, CVSS vector and CWE, and checked by a supervisor. May contain errors.
🛡️ ATT&CK mitigations that cover these techniques
Affected technologies (1)
CWEs
- CWE-502
References
Raw JSON (NVD)
Show
{
"id": "CVE-2026-3060",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2026-3060",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "poc"
},
{
"automatable": "yes"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2026-03-12T14:20:47.695650Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 9.8,
"attackVector": "NETWORK",
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "cret@cert.org",
"affectedData": [
{
"vendor": "SGLang",
"product": "SGLang",
"versions": [
{
"status": "affected",
"version": "0.5.10"
}
]
}
]
}
],
"published": "2026-03-12T12:15:59.530",
"references": [
{
"url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/srt/disaggregation/encode_receiver.py",
"tags": [
"Product"
],
"source": "cret@cert.org"
},
{
"url": "https://github.com/sgl-project/sglang/pull/20904",
"source": "cret@cert.org"
},
{
"url": "https://github.com/sgl-project/sglang/releases/tag/v0.5.10",
"source": "cret@cert.org"
},
{
"url": "https://orca.security/resources/blog/sglang-llm-framework-rce-vulnerabilities/",
"tags": [
"Exploit",
"Mitigation",
"Third Party Advisory"
],
"source": "cret@cert.org"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"description": [
{
"lang": "en",
"value": "CWE-502"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "SGLang' encoder parallel disaggregation system is vulnerable to unauthenticated remote code execution through the disaggregation module, which deserializes untrusted data using pickle.loads() without authentication."
},
{
"lang": "es",
"value": "El sistema de desagregación paralela del codificador de SGLang es vulnerable a la ejecución remota de código no autenticada a través del módulo de desagregación, que deserializa datos no confiables utilizando pickle.loads() sin autenticación."
}
],
"lastModified": "2026-06-17T10:42:58.753",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:lmsys:sglang:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2E8F6412-A923-42B6-8A44-ABE6009333E3",
"versionEndIncluding": "0.5.9",
"versionStartIncluding": "0.5.5"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cret@cert.org"
}