PT-2026-55296 · Lobe Chat · Lobe Chat

·

CVE-2026-59095

·

Published

2026-07-02

·

Updated

2026-07-07

CVSS v4.0

8.3

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions LobeChat versions prior to 2.2.10-canary.18
Description Authenticated attackers can perform server-side request forgery (SSRF), a flaw where the server is tricked into making requests to an unintended location. By providing malicious input to the 'importFromUrl' and 'fetchImageFromUrl' endpoints, attackers can direct internal HTTP requests to arbitrary URLs. This occurs because these endpoints utilize the global fetch function instead of the project's ssrf-safe-fetch wrapper. This can be exploited to target internal addresses, such as cloud instance metadata endpoints, to disclose cloud credentials and internal service responses.
Recommendations Update LobeChat to version 2.2.10-canary.18 or later. As a temporary mitigation, restrict access to the 'importFromUrl' and 'fetchImageFromUrl' endpoints.

Exploit

Fix

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-59095

Affected Products

Lobe Chat