VYPR

fastgpt-sandbox

by Labring

CVEs (2)

  • CVE-2026-32128MedMar 11, 2026
    risk 0.41cvss 6.3epss 0.00

    FastGPT is an AI Agent building platform. In 4.14.7 and earlier, FastGPT's Python Sandbox (fastgpt-sandbox) includes guardrails intended to prevent file writes (static detection + seccomp). These guardrails are bypassable by remapping stdout (fd 1) to an arbitrary writable file…

  • CVE-2025-49131MedJun 9, 2025
    risk 0.00cvss 6.3epss 0.00

    FastGPT is an open-source project that provides a platform for building, deploying, and operating AI-driven workflows and conversational agents. The Sandbox container (fastgpt-sandbox) is a specialized, isolated environment used by FastGPT to safely execute user-submitted or…