CVE-2026-40351Disclosure(fastgpt / fastgpt)

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (5 latest mentions)

Immediate actions

  • Prioritize remediation for fastgpt fastgpt systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

FastGPT is an AI Agent building platform. In versions prior to 4.14.9.5, the password-based login endpoint uses TypeScript type assertion without runtime validation, allowing an unauthenticated attacker to pass a MongoDB query operator object (e.g., {"$ne": ""}) as the password field. This NoSQL injection bypasses the password check, enabling login as any user including the root administrator. This issue has been fixed in version 4.14.9.5.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-943

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • fastgpt

Threat summary

  • Public PoC and exploit tooling are both present
  • 6 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 6 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked at 5 mentions on most recent observed day (2026-04-18)
  • 6 total mentions across 2 days

Affected systems

Vendors
Products
fastgpt

Deep dive

Activity timeline6 mentions / 2d
01345Mentions · 2026-04-17: 1Mentions · 2026-04-18: 5PoC Mentioned / Linked · 2026-04-17: 1Exploit Tool / Code · 2026-04-17: 1Technical Details · 2026-04-17: 1Technical Details · 2026-04-18: 504-1704-18
Signal classification3 categories
Disclosure
466.7%
PoC
116.7%
General
116.7%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-171
PoC1
2026-04-185
Disclosure4General1
Full discourse6 posts
  • Hexon@hexonbot
    Disclosure

    FastGPT hit by critical NoSQL injection vulnerabilities enabling unauthenticated admin access. CVE-2026-40351 and CVE-2026-40352 threaten AI agent platforms. https://www.hexon.bot/blog/fastgpt-nosql-injection-ai-agent-security-2026 #AISecurity #FastGPT #CVE

    Post summary

    FastGPT faces critical NoSQL injection flaws (CVE‑2026‑40351/52) that enable unauthenticated admin access, with no evidence of active exploitation, PoC, or patch yet.

    2000090
    398 followersView on X
  • The New Claw Times@newclawtimes
    Disclosure

    Two CVEs chained. CVE-2026-40351 (CVSS 9.8): unauthenticated login as root via the login endpoint. CVE-2026-40352 (CVSS 8.8): change any account's password without knowing it. Chain: get root access, lock out all admins, keep persistent control.

    Post summary

    The brief note lists two CVEs with CVSS scores and explains how they can be chained to gain root access, but offers no PoC, tool, patch, or evidence of active exploitation.

    1000051
    33 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-40351 FastGPT is an AI Agent building platform. In versions prior to 4.14.9.5, the password-based login endpoint uses TypeScript type assertion without runtime validation, … https://www.cve.org/CVERecord?id=CVE-2026-40351

    Post summary

    CVE-2026-40351 is disclosed as a flaw in FastGPT’s login endpoint where TypeScript type assertion is used without runtime validation, affecting versions prior to 4.14.9.5.

    00010146
    57.7K followersView on X
  • TKtokyo@tktokyoBTC
    Disclosure

    ▸ FastGPT AIエージェントプラットフォームにパスワード認証の脆弱性(CVE-2026-40351) AIエージェント構築プラットフォーム「FastGPT」のバージョン4.14.9.5以前に、パスワード認証システムの重大な脆弱性が発見された。この問題はTypeScript型アサーションの不適切な使用が原因とされている。 AIプラットフォームの普及に伴い、セキュリティ脆弱性の影響範囲も拡大している。企業がAIツールを導入する際は、定期的なセキュリティ更新と脆弱性対応が不可欠になっている。 https://www.cve.org/CVERecord?id=CVE-2026-40351

    Post summary

    FastGPT before 4.14.9.5 has a password authentication vulnerability caused by improper TypeScript type‑assertion usage; no PoC, exploit code, or active exploitation is reported, and no specific patch is mentioned.

    0000060
    2.7K followersView on X
  • CTIWatch@ctiwatchcloud
    General

    🔍 Today's Top Vulnerabilities 🔴 CVE-2026-40342 | CVSS 9.9 🔴 CVE-2026-40351 | CVSS 9.8 🔴 CVE-2026-37749 | CVSS 9.8 🔗 http://ctiwatch.cloud/vulnerabilities #CVE #Vulnerability #ThreatIntel

    Post summary

    Three high‑scoring CVEs are listed, but the post offers only CVSS scores without any detail on exploitation or mitigation.

    0000081
    5.6K followersView on X
  • 0day Signal@0dayPublishing
    PoC

    🚨 CVE-2026-40351: FastGPT: NoSQL Injection in logi... TypeScript type assertion strikes again - `{"$ne": ""}` as password bypasses MongoDB auth checks, instant root on any F... https://zerodaysignal.com/vulnerability/CVE-2026-40351 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The tweet announces CVE-2026-40351, highlights a NoSQL injection via a TypeScript assertion that bypasses MongoDB auth, provides an exploit vector, and links to a site that likely contains PoC code, but offers no evidence of active exploitation or patch.

    0000073
    218 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appfastgptfastgpt---

Explore more