PT-2026-55296 · Lobe Chat · Lobe Chat
CVSS v4.0
8.3
High
| Vector | AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
LobeChat versions prior to 2.2.10-canary.18
Description
Authenticated attackers can perform server-side request forgery (SSRF), a flaw where the server is tricked into making requests to an unintended location. By providing malicious input to the 'importFromUrl' and 'fetchImageFromUrl' endpoints, attackers can direct internal HTTP requests to arbitrary URLs. This occurs because these endpoints utilize the global fetch function instead of the project's
ssrf-safe-fetch wrapper. This can be exploited to target internal addresses, such as cloud instance metadata endpoints, to disclose cloud credentials and internal service responses.Recommendations
Update LobeChat to version 2.2.10-canary.18 or later.
As a temporary mitigation, restrict access to the 'importFromUrl' and 'fetchImageFromUrl' endpoints.
Exploit
Fix
SSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Lobe Chat