Vulnerabilidades en sgl-project
5 resultadosAnálisis Vexday
O SGL Project apresenta um perfil de risco baixo com apenas 2 vulnerabilidades catalogadas, nenhuma em exploração ativa conhecida e sem achados críticos. Ambas as falhas foram divulgadas recentemente (últimos 90 dias) e concentram-se em fraqueza de tratamento de recursos (CWE-404), sugerindo um componente immaturo que requer monitoramento contínuo.
CVE-2026-93838HIGHSGLang through 0.5.20 Unbounded Memory Allocation via STAGING_REQ chunk_idxEPSS 0.5%CVE-2026-93688HIGHSGLang through 0.5.19 Unbounded Memory Allocation via bootstrap_roomEPSS 0.4%CVE-2026-7669MEDIUMsgl-project SGLang HuggingFace Transformer hf_transformers_utils.py get_tokenizer code injectionEPSS 0.4%CVE-2026-92972HIGHSGLang through 0.5.19 Unauthenticated Route Poisoning via PUT endpointEPSS 0.3%CVE-2026-10775LOWsgl-project SGLang Cache data_hash denial of serviceEPSS 0.1%