CVE-2026-17534 | MoonshotAI Kimi Code up to 0.26.x FetchURL assertSafeFetchTarget server-side request forgery

SecurityVulns

A vulnerability labeled as problematic has been found in MoonshotAI Kimi Code up to 0.26.x. The affected element is the function assertSafeFetchTarget of the component FetchURL. The manipulation results in server-side request forgery.

This vulnerability is known as CVE-2026-17534. It is possible to launch the attack remotely. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More