[Bug] unauthenticated `pickle.loads` on TCP-bound ZMQ socket allows network RCE in distributed inference workers
May 7, 2026 ยท #24618
Python
Difficulty: Medium
Parent Repository
sgl-project/sglang
Python repository
27,500 5,782