Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-82475— iFlytek astron-agent through 1.1.1 Workflow Hijacking via Missing Ownership Check

Quick assessment

Affected
iflytek astron-agent
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

飞兔(iFlytek)astron-agent 在 1.1.1 及之前版本中存在一个授权绕过漏洞,该漏洞位于 copyFlow 端点,因为未能验证工作流的所有权关系。经过认证的攻撃者可以枚举工作流标识符,从而覆盖其他租户的工作流,或复制私有工作流以读取其定义。

CVSS 8.1 · High

Possible ATT&CK Techniques 1 AI

T1646
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-82475

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
iFlytek astron-agent through 1.1.1 Workflow Hijacking via Missing Ownership Check
Source: CVE Program / CVE List V5
Vulnerability Description
iFlytek astron-agent through 1.1.1 contains an authorization bypass vulnerability in the copyFlow endpoint that fails to validate workflow ownership. Authenticated attackers can enumerate workflow identifiers and overwrite other tenants' workflows or copy private workflows to read their definitions.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
授权机制缺失
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
iflytek astron-agent 0 ~ 1.1.1 -

II. Public POCs for CVE-2026-82475

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-82475

登录查看更多情报信息。

Other References for CVE-2026-82475 (3)

IV. Related Vulnerabilities

V. Comments for CVE-2026-82475

No comments yet


Leave a comment