VYPR
High severity8.8NVD Advisory· Published Mar 20, 2026· Updated Jun 17, 2026

CVE-2026-33075

CVE-2026-33075

Description

FastGPT is an AI Agent building platform. In versions 4.14.8.3 and below, the fastgpt-preview-image.yml workflow is vulnerable to arbitrary code execution and secret exfiltration by any external contributor. It uses pull_request_target (which runs with access to repository secrets) but checks out code from the pull request author's fork, then builds and pushes Docker images using attacker-controlled Dockerfiles. This also enables a supply chain attack via the production container registry. A patch was not available at the time of publication.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Labring/Fastgpt3 versions
    cpe:2.3:a:fastgpt:fastgpt:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:fastgpt:fastgpt:*:*:*:*:*:*:*:*range: <=4.14.8.3
    • (no CPE)range: <=4.14.8.3
    • (no CPE)range: <= 4.14.8.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.