CVE-2026-92972 | sgl-project SGLang up to 0.5.19 Prefill Bootstrap Service rank_ip/rank_port server-side request forgery

SecurityVulns

A vulnerability was found in sgl-project SGLang up to 0.5.19. It has been declared as critical. This issue affects some unknown processing of the component Prefill Bootstrap Service. Such manipulation of the argument rank_ip/rank_port leads to server-side request forgery.

This vulnerability is traded as CVE-2026-92972. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More