Home

Description

SGLangs `replay_request_dump.py` contains an insecure pickle.load() without validation and proper deserialization. An attacker can take advantage of this by providing a malicious .pkl file, which will execute the attackers code on the device running the script.

PUBLISHED Reserved 2026-03-11 | Published 2026-03-12 | Updated 2026-03-12 | Assigner certcc

Problem types

CWE-502: Deserialization of Untrusted Data

Product status

0.5.5 (custom)
affected

References

github.com/...main/scripts/playground/replay_request_dump.py

orca.security/...g/sglang-llm-framework-rce-vulnerabilities/

cve.org (CVE-2026-3989)

nvd.nist.gov (CVE-2026-3989)

Download JSON