Junglewise Threat Intelligence

CVE-2026-3059: PYSEC-2026-539 - SGLang's multimodal generation module is vulnerable to unauthenticated remote code execution through the ZMQ broker

CVE-2026-3059 · Severity: low · CVSS 3.1 · Published 2026-06-29

Technologies: sglang (PyPI). Vendors: PyPI.

Executive brief

SGLang's multimodal generation module is vulnerable to unauthenticated remote code execution through the ZMQ broker

Affected products

  • PyPI sglang

Related threats