Sunday, 13 September 2026
8 agent hacks today 7 vs yesterday (1)

FastGPT CI workflow flaw allows code execution and secret theft (CVE-2026-33075)

FastGPT versions 4.14.8.3 and below contain a vulnerable fastgpt-preview-image.yml GitHub Actions workflow that uses pull_request_target while checking out and building code from a pull request author's fork, allowing any external contributor to execute arbitrary code, exfiltrate repository secrets, and push malicious images to the production container registry. No patch was available at publication.

Disclosed 20 March 2026 · Record updated 13 September 2026

Impact

Enables arbitrary code execution and exfiltration of repository secrets by any external contributor, and a potential supply chain attack via the production container registry.

Our coverage

No articles linked to this incident yet.

Sources

  1. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-33075