{"id":"CVE-2026-15974","summary":"CVE-2026-15974","details":"SGLang contains an SSRF and local file read in the multimodal generation endpoint /v1/chat/completions due to unsanitized image_url, allowing access to internal metadata, secrets, and services.","aliases":["GHSA-x7w5-h7rp-gfp9"],"modified":"2026-08-02T03:32:05.754287449Z","published":"2026-07-30T18:07:35.029Z","database_specific":{"cna_assigner":"certcc","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/15xxx/CVE-2026-15974.json"},"references":[{"type":"WEB","url":"https://thoughts.apoorvdayal.com/posts/sglang-disclosures/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/15xxx/CVE-2026-15974.json"},{"type":"ADVISORY","url":"https://github.com/sgl-project/sglang/security/advisories/GHSA-x7w5-h7rp-gfp9"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-15974"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/sgl-project/sglang","events":[{"introduced":"0"},{"last_affected":"f63458b5beaceabbd9d749b9fc956370e1b649e6"}],"database_specific":{"source":"AFFECTED_FIELD","extracted_events":[{"introduced":"0"},{"last_affected":"v0.5.15"}]}}],"versions":["v0.5.15","gateway-v0.3.1","gateway-v0.3.0","v0.5.6.post2","gateway-v0.2.4","v0.5.6.post1","v0.5.6","v0.5.5","v0.5.5.post3","gateway-v0.2.3","v0.5.5.post2","v0.5.5.post1","v0.5.4.post3","v0.5.4.post2","gateway-v0.2.2","v0.5.4.post1","v0.5.4","gateway-v0.2.1","v0.5.3.post3","v0.5.3.post2","gateway-v0.2.0","v0.5.3.post1","v0.5.3","v0.5.3rc2","v0.5.3rc1","v0.5.3rc0","v0.5.2","v0.5.2rc2","v0.5.2rc1","v0.5.2rc0","v0.5.1.post3","v0.5.1.post2","v0.5.1.post1","v0.5.1","v0.5.0rc2","v0.5.0rc1","v0.5.0rc0","gateway-v0.1.9","v0.4.10.post2","v0.4.10.post1","gateway-v0.1.8","gateway-v0.1.7","v0.4.10","v0.4.9.post6","v0.4.9.post5","v0.4.9.post4","v0.4.9.post3","gateway-v0.1.6","v0.4.9.post2","v0.4.9.post1","gateway-v0.1.5","v0.4.9","v0.4.8.post1","v0.4.8","v0.4.7.post1","v0.4.7","v0.4.6.post5","v0.4.6.post4","v0.4.6.post3","v0.4.6.post2","v0.4.6.post1","v0.4.6","v0.4.5.post3","v0.4.5.post2","v0.4.5.post1","v0.4.5","v0.4.4.post4","v0.4.4.post3","v0.4.4.post2","v0.4.4.post1","v0.4.4","v0.4.3.post4","v0.4.3.post3","v0.4.3.post2","v0.4.3.post1","v0.4.3","v0.4.2.post4","v0.4.2.post3","v0.4.2.post2","v0.4.2.post1","v0.4.2","v0.4.1.post7","v0.4.1.post6","v0.4.1.post5","v0.4.1.post4","v0.4.1.post3","v0.4.1.post2","v0.4.1.post1","v0.4.1","v0.4.0.post2","v0.4.0.post1","v0.4.0","v0.3.6.post3","v0.3.6.post2","v0.3.6.post1","v0.3.6","v0.3.5.post2","v0.3.5.post1","v0.3.5","v0.3.4.post2","v0.3.4.post1","v0.3.4","v0.3.3.post1","v0.3.3","v0.3.2","v0.3.1.post3","v0.3.1.post2","v0.3.1.post1","v0.3.0","v0.2.15","v0.2.14.post2","v0.2.14.post1","v0.2.14","v0.2.13","v0.2.12","v0.2.11","v0.2.10","v0.2.9.post1","v0.2.9","v0.2.8","v0.2.7","v0.2.6","v0.2.5","v0.2.0","v0.1.24","v0.1.23","v0.1.22","v0.1.21","v0.1.20","v0.1.19","v0.1.18","v0.1.17","v0.1.16","v0.1.15","v0.1.14","v0.1.13","v0.1.12","v0.1.11","v0.1.10","v0.1.9","v0.1.8","v0.1.7","v0.1.6","v0.1.5","v0.1.3"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-15974.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"}]}