CVE-2026-6608Medium· 5.3▾ SunlitFastChat has a Content Moderation Bypass via Arena Side-by-Side Views
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.2 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 13.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
0.3%
A vulnerability was detected in lm-sys fastchat up to 0.2.36. Impacted is the function add_text of the component Arena Side-by-Side View Handler. The manipulation results in incorrect control flow. The attack can be launched remotely. The exploit is now public and may be used. The root cause was fixed in commit 34eca62 for gradio_block_arena_named.py, but three other files were missed.
fschat <= 0.2.36Refer to the advisory for the patched release.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-6607Medium· 5.3FastChat has Denial of Service Through Blocking Event Loop in Model Workers (Incomplete Fix for ff66426)
CVE-2024-10907High· 7.5FastChat Uncontrolled Resource Consumption vulnerability
CVE-2024-11603High· 7.5FastChat Server-Side Request Forgery vulnerability
CVE-2024-12376High· 7.5FastChat Server-Side Request Forgery vulnerability
CVE-2024-10912High· 7.5FastChat Denial of Service vulnerability
CVE-2024-10908Medium· 6.1FastChat open redirect vulnerability