Unauthenticated Route Poisoning Vulnerability in SGLang by SGL Project
CVE-2026-92972

8.8HIGH

Key Information:

Status
Vendor
CVE Published:
17 September 2026

What is CVE-2026-92972?

The SGLang application, up to version 0.5.19, features a vulnerability in its prefill bootstrap service that exposes an unauthenticated PUT /route endpoint. This flaw enables attackers to manipulate the KV transfer routing table by providing arbitrary rank_ip and rank_port values. Such manipulation can redirect decode workers to malicious endpoints, potentially leading to denial of service instances or unauthorized access to sensitive KV transfer metadata. This includes exposure of session identifiers and tensor-parallel topology parameters, posing significant security risks.

Affected Version(s)

sglang 0 <= 0.5.19

References

CVSS V4

Score:
8.8
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jiapeng Li
Jiajia Liu
Tongchun Xiao
.