CVE-2026-44285: FastGPT: SSRF Protection Bypass via `externalFile` in Dataset Preview API
FastGPT is an AI Agent building platform. Prior to 4.15.0-beta1, a Server-Side Request Forgery (SSRF) vulnerability allows an authenticated attacker to bypass the global isInternalAddress network protection and make arbitrary HTTP GET requests to internal network services. This is achieved by exploiting an incomplete fix in the dataset preview endpoint /api/core/dataset/file/getPreviewChunks when utilizing the externalFile data import type. This vulnerability is fixed in 4.15.0-beta1.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
FastGPTto a version that resolves this vulnerability.Fixed in 4.15.0-beta1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-44285?
The severity of CVE-2026-44285 is rated as high, with a score of 7.7.
How do I fix CVE-2026-44285?
To fix CVE-2026-44285, upgrade FastGPT to version 4.15.0-beta1 or later.
What is the impact of CVE-2026-44285?
CVE-2026-44285 allows authenticated attackers to bypass SSRF protections and make arbitrary HTTP GET requests to internal services.
Which versions of FastGPT are affected by CVE-2026-44285?
Versions of FastGPT prior to 4.15.0-beta1 are affected by CVE-2026-44285.
What type of vulnerability is CVE-2026-44285?
CVE-2026-44285 is classified as a Server-Side Request Forgery (SSRF) vulnerability.