CVE-2026-61684 | labring FastGPT 4.15.0-beta4 Plugin Invoke /api/invoke authenticate tmbId information disclosure
A vulnerability labeled as problematic has been found in labring FastGPT 4.15.0-beta4. This issue affects the function Authenticate of the file /api/invoke of the component Plugin Invoke. The manipulation of the argument tmbId results in information disclosure.
This vulnerability is cataloged as CVE-2026-61684. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More