CVE-2026-68929: FastGPT is an open-source LLM platform for building AI applications on a knowledge base. In versions prior to 4.15.2, the WeChat (iLink) share-channel endpoints authorize requests using only the pu...

Added to the CISA Known Exploited Vulnerabilities catalog on 28 Aug 2026. Vendor: AI/ML. Product: LLM.

FastGPT is an open-source LLM platform for building AI applications on a knowledge base. In versions prior to 4.15.2, the WeChat (iLink) share-channel endpoints authorize requests using only the public shareId, with no authenticated identity or team-ownership check. As a result, an unauthenticate...

Required action: Review and patch if applicable to your AI infrastructure.