CVE-2026-3788 | Bytedesk up to 1.3.9 SpringAIOpenrouterRestController SpringAIOpenrouterRestService.java getModels apiUrl server-side request forgery (Issue 20 / EUVD-2026-10278)
A vulnerability was found in Bytedesk up to 1.3.9. It has been declared as critical. This impacts the function getModels of the file source-code/src/main/java/com/bytedesk/ai/springai/providers/openrouter/SpringAIOpenrouterRestService.java of the component SpringAIOpenrouterRestController. Such manipulation of the argument apiUrl leads to server-side request forgery.
This vulnerability is traded as CVE-2026-3788. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.