CVE-2026-34162 | labring FastGPT up to 4.14.7 Endpoint runTool missing authentication (EUVD-2026-17445)
A vulnerability was found in labring FastGPT up to 4.14.7. It has been declared as critical. This issue affects some unknown processing of the file /api/core/app/httpTools/runTool of the component Endpoint. The manipulation results in missing authentication.
This vulnerability is reported as CVE-2026-34162. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.