CVE-2026-93088

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

SGLang's multimodal generation runtime is vulnerable to unauthenticated arbitrary code execution because the disaggregated-diffusion orchestrator's DiffusionServer binds an unauthenticated ZeroMQ ROUTER socket to a network interface and passes the final frame of received multipart messages directly to pickle.loads() before any validation occurs.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-502

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Peaked 1d ago at 2 mentions (2026-09-22); latest day: 1
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-09-22: 2Mentions · 2026-09-23: 109-2209-23
Referenced assets3 URLs
Full discourse3 posts
  • soke@hacchoomiso

    New CVE: CVE-2026-93088 SGLang pre-auth RCE (CVSS 9.8) https://hacchoomiso.github.io/blog/SGLang/CVE-2026-93088/ Huge thanks to @CERTCC (VINCE) for their help!

    00120155
    80 followersView on X
  • VulnTracker@vuln_tracker

    An unauthenticated socket in SGLang leads straight to arbitrary code execution (CVSS 9.8). CVE-2026-93088 sits in SGLang's diffusion orchestrator, which binds an open ZeroMQ socket to the network and passes incoming message frames directly to pickle.loads(). Anyone who can reach it gets code execution, no login needed. Proof-of-concept exploit code is already public. Affects SGLang 0.5.11. Update now. Details: http://vulntracker.io/cves/CVE-2026-93088 #SGLang #CVE #AI #InfoSec #CyberSecurity

    0000072
    762 followersView on X
  • Severity Daily@severitydaily

    SGLang's unauthenticated code execution record carries no CVSS score. The denial of service published three seconds later carries 5.9. The unpickle sink is still in 0.5.20. No exploitation reported. https://severitydaily.com/sglang-cve-2026-93088-pickle-zeromq-range-ends-0-5-14-still-in-0-5-20/

    0000024
    24 followersView on X

Explore more