labring FastGPT是labring公司开源的一款基于大语言模型的开源知识库问答系统。 labring FastGPT 4.14.17版本至4.15.0-beta5之前版本存在授权问题漏洞,该漏洞源于对POST /api/core/chat/record/getCollectionQuote端点的授权验证不当,initialId中心节点查找未绑定已授权上下文,可能导致低权限租户用户利用有效参数获取其他租户的数据集引用或全文内容。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-61643 | 5.9 MEDIUM | FastGPT: workflow runtime can execute another user's private HTTP toolset |
| CVE-2026-61684 | FastGPT: Unauthenticated cross-tenant data access via forgeable plugin-invoke JWT (default | |
| CVE-2026-61646 | FastGPT: Shared axios SSRF guard validates only the initial URL before following redirects | |
| CVE-2026-50562 | FastGPT: Untrusted PR artifacts are pushed and deployed by privileged preview workflows |
No comments yet