---
id: CVE-2026-10300
aliases:
  - GHSA-m2jr-x4gq-5rmj
title: "SGLang: Reachable Assertion via \_lora_path\_ in LoRAManager enables remote Denial of Dervice"
summary: "SGLang: Reachable Assertion via \_lora_path\_ in LoRAManager enables remote Denial of Dervice"
severity: low
cvss: 3.7
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L'
vendor: sglang
product: sglang
ecosystem: pip
affected:
  - sglang <= 0.5.10.post1
published: '2026-06-02'
updated: '2026-07-09'
source: OSV
sourceUrl: 'https://osv.dev/vulnerability/GHSA-m2jr-x4gq-5rmj'
references:
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-10300'
  - url: 'https://github.com/sgl-project/sglang/issues/23141'
  - url: 'https://github.com/sgl-project/sglang/pull/25078'
  - url: 'https://github.com/sgl-project/sglang'
  - url: 'https://vuldb.com/cve/CVE-2026-10300'
  - url: 'https://vuldb.com/submit/828086'
  - url: 'https://vuldb.com/vuln/367593'
  - url: 'https://vuldb.com/vuln/367593/cti'
tags:
  - osv
  - pip
epss: 0.00368
epssPercentile: 0.27937
ingestedAt: '2026-07-09T18:56:35.258Z'
---

## Overview

A security vulnerability has been detected in SGLang 0.5.10.post1. Impacted is an unknown function of the file python/sglang/srt/lora/lora_manager.py of the component Inference HTTP Endpoint. Such manipulation of the argument lora_path leads to reachable assertion. The attack can be launched remotely. A high complexity level is associated with this attack. The exploitability is considered difficult. The exploit has been disclosed publicly and may be used. The pull request to fix this issue awaits acceptance.

## Affected packages

- `sglang <= 0.5.10.post1`

## Remediation

Refer to the advisory for the patched release.
