CVE-2025-10164

HIGH

Pypi Sglang < 0.5.4 - Insecure Deserialization

Title source: rule

Description

A security flaw has been discovered in lmsys sglang 0.4.6. Affected by this vulnerability is the function main of the file /update_weights_from_tensor. The manipulation of the argument serialized_named_tensors results in deserialization. The attack can be launched remotely. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Scores

CVSS v3 7.3
EPSS 0.0009
EPSS Percentile 24.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Classification

CWE
CWE-502 CWE-20
Status draft

Affected Products (1)

pypi/sglang < 0.5.4PyPI

Timeline

Published Sep 09, 2025
Tracked Since Feb 18, 2026