CVE-2026-93088 | SGLang up to 0.5.14 DiffusionServer pickle.loads deserialization
A vulnerability classified as critical has been found in SGLang up to 0.5.14. Affected by this vulnerability is the function pickle.loads of the component DiffusionServer. This manipulation causes deserialization.
This vulnerability appears as CVE-2026-93088. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More