Arbitrary URL Access Vulnerability in FastGPT AI Agent Platform
CVE-2026-40100
5.3MEDIUM
What is CVE-2026-40100?
FastGPT, an AI Agent building platform, contains a vulnerability that allows unauthenticated users to access arbitrary URLs via the /api/core/app/mcpTools/runTool endpoint. This weakness arises because the internal IP check only restricts access to private IPs when the configuration parameter CHECK_INTERNAL_IP is set to true—something that is not enabled by default. As a result, this could lead to malicious actors executing SSRF attacks against internal network resources. The issue has been resolved in version 4.14.10.3.
Affected Version(s)
FastGPT < 4.14.10.3
