FastGPT CI workflow flaw allows code execution and secret theft (CVE-2026-33075)
FastGPT versions 4.14.8.3 and below contain a vulnerable fastgpt-preview-image.yml GitHub Actions workflow that uses pull_request_target while checking out and building code from a pull request author's fork, allowing any external contributor to execute arbitrary code, exfiltrate repository secrets, and push malicious images to the production container registry. No patch was available at publication.
Disclosed 20 March 2026 · Record updated 13 September 2026
Impact
Enables arbitrary code execution and exfiltration of repository secrets by any external contributor, and a potential supply chain attack via the production container registry.
Our coverage
No articles linked to this incident yet.
Sources
- nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-33075
