216.73.217.22

CVE-2026-40100

· Published 10/04/2026 17:17 · Modified 10/04/2026 17:17

Labels: CVE-2026-40100 2026-04-10CVE-2026-40100CWE-918[email protected]

Essential information

Published
10/04/2026 17:17
Modified
10/04/2026 17:17
Author
Creator
CVSS
5.3 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CVSS metrics

Description

FastGPT is an AI Agent building platform. Prior to 4.14.10.3, the /api/core/app/mcpTools/runTool endpoint accepts arbitrary URLs without authentication. The internal IP check in isInternalAddress() only blocks private IPs when CHECK_INTERNAL_IP=true, which is not the default. This allows unauthenticated attackers to perform SSRF against internal network resources. This vulnerability is fixed in 4.14.10.3.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
fastgpt / fastgpt cpe:2.3:a:fastgpt:fastgpt:<4.14.10.3:*:*:*:*:*:*:*

References