Notes

SGLang exposes keyless remote code execution, the fourth flaw in 18 days


CERT/CC published CVE-2026-86793 on September 11. It affects versions up to 0.5.18, and as of this writing the project hasn't released a patch.

September 12, 2026 · Translated from the Spanish original

What happened

Why it matters

The number

18 days. The window between August 25 and September 11 in which the four critical flaws were disclosed.

Context

The pace of disclosures in this kind of component went from roughly one a month during 2025 to about one a week in the third quarter of 2026, according to the count published by Forkast. It’s not just greater scrutiny: it’s quickly integrated software entering production before compensating controls exist.

What’s next

Bottom line

On the same September 11, GreyNoise researchers documented a campaign in which hundreds of automated agents exploited two PaperCut vulnerabilities and compromised 395 organizations in 48 countries. The two stories arrived on the same day and point to the same place: the fragile link in AI in production isn’t the model; it’s the software around it. There’s already an open debate about where the real risk lives.

Sources

Related notes

← All notes