Database/AI/ML frameworks & serving

SGLang (multimodal runtime): Unauthenticated path traversal
CVE-2026-7302AI/ML frameworks & servingcurated
Impact
Unauthenticated path traversal → arbitrary file write as the server process
Who can reach it
Unauthenticated network to the serving port
What to do
Upgrade; run serving processes non-root with read-only root filesystems
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.