{"id":"CVE-2026-59095","summary":"LobeChat \u003c 2.2.10-canary.18 - SSRF via importFromUrl and fetchImageFromUrl","details":"LobeChat before 2.2.10-canary.18 contains a server-side request forgery vulnerability that allows authenticated attackers to direct internal HTTP requests to arbitrary URLs by supplying user-controlled input to the skill import service (importFromUrl) and topic cover update (fetchImageFromUrl) endpoints, which use the global fetch without the project's ssrf-safe-fetch wrapper. Attackers can target internal addresses such as cloud instance metadata endpoints through these unprotected code paths to disclose internal service responses and cloud credentials.","modified":"2026-09-17T11:45:26.367710988Z","published":"2026-07-02T19:41:16.367Z","database_specific":{"cwe_ids":["CWE-918"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/59xxx/CVE-2026-59095.json","cna_assigner":"VulnCheck"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/59xxx/CVE-2026-59095.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-59095"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/lobechat-canary-18-ssrf-via-importfromurl-and-fetchimagefromurl"},{"type":"FIX","url":"https://github.com/lobehub/lobehub/pull/16601"},{"type":"PACKAGE","url":"https://github.com/lobehub/lobehub"},{"type":"EVIDENCE","url":"https://github.com/lobehub/lobehub/issues/16536"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/lobehub/lobehub","events":[{"introduced":"0"},{"fixed":"dd3b6cbe987e42db4b715875dca7d3218ae534e4"}],"database_specific":{"source":"AFFECTED_FIELD","extracted_events":[{"introduced":"0"},{"fixed":"2.2.10-canary.18"}]}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-59095.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N"}]}