Unrated severityNVD Advisory· Published Jul 15, 2026· Updated Jul 15, 2026
FastGPT: /api/core/chat/record/getCollectionQuote can disclose cross-tenant dataset text due to an unbound initialId lookup
CVE-2026-61644
Description
FastGPT is a knowledge-based AI application platform. From 4.14.17 until 4.15.0-beta5, the POST /api/core/chat/record/getCollectionQuote endpoint authenticates the caller's chat and collection context, but the initialId center-node lookup is not bound to that authorized context. A low-privileged tenant user can call the endpoint with valid attacker-owned appId, chatId, chatItemDataId, and collectionId values while supplying another tenant's dataset data id as initialId, causing the response to include foreign dataset quote or full-text content. This issue is fixed in version 4.15.0-beta5.
Affected products
1Patches
Vulnerability mechanics
References
4- github.com/labring/FastGPT/commit/0c1840c7773c5be5d777f86228651479e02155dbmitrex_refsource_MISC
- github.com/labring/FastGPT/pull/7173mitrex_refsource_MISC
- github.com/labring/FastGPT/releases/tag/v4.15.0-beta5mitrex_refsource_MISC
- github.com/labring/FastGPT/security/advisories/GHSA-mmg6-2g54-j896mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.