CVE-2026-26003: FastGPT Plugin forwarding request is not authenticated, posing a serious risk of attack
FastGPT is an AI Agent building platform. From 4.14.0 to 4.14.5, attackers can directly access the plugin system through FastGPT/api/plugin/xxx without authentication, thereby threatening the plugin system. This may cause the plugin system to crash and the loss of plugin installation status, but it will not result in key leakage. For older versions, as there are only operation interfaces for obtaining information, the impact is almost negligible. This vulnerability is fixed in 4.14.5-fix.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-26003?
CVE-2026-26003 is considered a high severity vulnerability due to the lack of authentication allowing direct access to the plugin system.
How do I fix CVE-2026-26003?
To fix CVE-2026-26003, upgrade FastGPT from version 4.14.0 to a version higher than 4.14.5, as the vulnerability has been addressed in later releases.
What types of attacks are possible due to CVE-2026-26003?
Attackers can exploit CVE-2026-26003 to access the plugin system without authentication, potentially leading to unauthorized actions and data exposure.
Who is affected by CVE-2026-26003?
CVE-2026-26003 affects users of the FastGPT plugin system running versions between 4.14.0 and 4.14.5.
Is the FastGPT plugin system secure after the fix for CVE-2026-26003?
Yes, after applying the fix in versions higher than 4.14.5, the FastGPT plugin system is secure against the vulnerabilities associated with CVE-2026-26003.