{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3afastchatfastchat/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:fastchat:fastchat:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.4,"id":"CVE-2026-85695"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["FastChat"],"_cs_severities":["critical"],"_cs_tags":["vulnerability","ssrf","authentication-bypass"],"_cs_type":"advisory","_cs_vendors":["FastChat"],"content_html":"\u003cp\u003eFastChat is vulnerable to an authentication bypass within its /register_worker endpoint, tracked as CVE-2026-85695. This flaw allows unauthenticated remote attackers to register malicious worker nodes to the FastChat controller without proper authorization. By registering these arbitrary worker addresses, an attacker can manipulate the worker mesh, perform server-side request forgery (SSRF) against internal services reachable from the controller, and intercept sensitive data. Specifically, malicious workers can be configured to process requests intended for legitimate models, allowing the attacker to capture user prompts, uploaded images, and model responses. This poses a severe risk to confidentiality and integrity within distributed LLM infrastructure, as the attacker effectively becomes a man-in-the-middle for model interactions.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability carries a CVSS v3.1 base score of 9.4, reflecting the critical nature of the authentication bypass. Successful exploitation allows for the interception of sensitive AI prompts and responses, as well as the potential for unauthorized scanning or exploitation of internal network resources via SSRF. Organizations relying on FastChat for distributed model serving are at risk of data exfiltration and unauthorized access to internal infrastructure.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the identification of internet-facing FastChat controller instances and ensure they are patched to the latest version. Monitor web server logs for suspicious POST requests to the /register_worker endpoint originating from unauthorized or unexpected IP addresses.\u003c/p\u003e\n","date_modified":"2026-09-04T15:26:50Z","date_published":"2026-09-04T15:26:50Z","id":"https://feed.craftedsignal.io/briefs/2026-09-fastchat-auth-bypass/","summary":"An authentication bypass vulnerability in FastChat allows unauthenticated attackers to register arbitrary workers, enabling server-side request forgery and the interception of model prompts and responses.","title":"Authentication Bypass and SSRF in FastChat /register_worker Endpoint","url":"https://feed.craftedsignal.io/briefs/2026-09-fastchat-auth-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:fastchat:fastchat:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}