CVE-2026-61644
published 2026-07-15CVE-2026-61644: FastGPT is a knowledge-based AI application platform. From 4.14.17 until 4.15.0-beta5, the POST /api/core/chat/record/getCollectionQuote endpoint authenticates…
PriorityP347high7.7CVSS 3.1
AVNACLPRLUINSCCHINAN
EPSS
0.41%
35.5th percentile
FastGPT is a knowledge-based AI application platform. From 4.14.17 until 4.15.0-beta5, the POST /api/core/chat/record/getCollectionQuote endpoint authenticates the caller's chat and collection context, but the initialId center-node lookup is not bound to that authorized context. A low-privileged tenant user can call the endpoint with valid attacker-owned appId, chatId, chatItemDataId, and collectionId values while supplying another tenant's dataset data id as initialId, causing the response to include foreign dataset quote or full-text content. This issue is fixed in version 4.15.0-beta5.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| labring | fastgpt | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No advisories linked to this vulnerability.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/labring/FastGPT/commit/0c1840c7773c5be5d777f86228651479e02155dbhttps://github.com/labring/FastGPT/pull/7173https://github.com/labring/FastGPT/releases/tag/v4.15.0-beta5https://github.com/labring/FastGPT/security/advisories/GHSA-mmg6-2g54-j896https://github.com/labring/FastGPT/security/advisories/GHSA-mmg6-2g54-j896
2026-07-15
Published