CVE-2026-54607: FastGPT: SSRF in HTTP-tool OpenAPI schema importer via SwaggerParser $ref (bypasses the isInternalAddress guard)
FastGPT is a knowledge-based AI application platform. Prior to 4.15.0-beta4, the HTTP-tool OpenAPI schema importer validates only the top-level URL before passing it to SwaggerParser.bundle, whose remote reference resolver fetches $ref URLs without FastGPT's internal-address guard and returns fetched content inline, allowing an authenticated team member to read internal services or cloud metadata. This issue is fixed in version 4.15.0-beta4.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
FastGPT HTTP-tool OpenAPI schema importerto a version that resolves this vulnerability.Fixed in 4.15.0-beta4
Event History
Frequently Asked Questions
What is the severity of CVE-2026-54607?
CVE-2026-54607 has a severity rating of high with a score of 7.7.
How do I fix CVE-2026-54607?
To fix CVE-2026-54607, upgrade the FastGPT HTTP-tool OpenAPI schema importer to version 4.15.0-beta4 or later.
What type of vulnerability is CVE-2026-54607?
CVE-2026-54607 is a Server-Side Request Forgery (SSRF) vulnerability.
What impact does CVE-2026-54607 have on FastGPT?
CVE-2026-54607 allows unauthorized remote references to be fetched, bypassing internal address guards.
When was CVE-2026-54607 published?
CVE-2026-54607 was published on July 7, 2026.