---
id: CVE-2026-95930
title: A security vulnerability has been detected in iFlytek astron-agent up to 1.0.6
summary: >-
  A security vulnerability has been detected in iFlytek astron-agent up to
  1.0.6. Affected by this vulnerability is the function UrlCheckTool.checkUrl of
  the component debugToolV2 API endpoint. The manipulation of the argument
  endPoint lea…
severity: medium
cvss: 6.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-918
vendor: iFlytek
product: astron-agent
affected:
  - astron-agent 1.0.0
  - astron-agent 1.0.1
  - astron-agent 1.0.2
  - astron-agent 1.0.3
  - astron-agent 1.0.4
  - astron-agent 1.0.5
  - astron-agent 1.0.6
published: '2026-09-23'
updated: '2026-09-23'
sourceUpdated: '2026-09-23T15:17:31.587'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-95930'
references:
  - url: 'https://github.com/iflytek/astron-agent/'
    label: cna@vuldb.com
  - url: >-
      https://github.com/iflytek/astron-agent/commit/45ee5fb647e9894e73b0d7720fa94a66e4540bbb
    label: cna@vuldb.com
  - url: 'https://github.com/iflytek/astron-agent/issues/1323'
    label: cna@vuldb.com
  - url: 'https://github.com/iflytek/astron-agent/pull/1338'
    label: cna@vuldb.com
  - url: 'https://github.com/iflytek/astron-agent/releases/tag/reward-1575'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-95930'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/953331'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/408552'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/408552/cti'
    label: cna@vuldb.com
  - url: 'https://github.com/iflytek/astron-agent/issues/1323'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - cve.org
  - exploit-available
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-23T14:53:43.906117Z'
epss: 0.003
epssPercentile: 0.20287
ingestedAt: '2026-09-23T03:16:01.010Z'
---

## Overview

A security vulnerability has been detected in iFlytek astron-agent up to 1.0.6. Affected by this vulnerability is the function UrlCheckTool.checkUrl of the component debugToolV2 API endpoint. The manipulation of the argument endPoint leads to server-side request forgery. The attack can be initiated remotely. Upgrading to version reward-1575 addresses this issue. The identifier of the patch is 45ee5fb647e9894e73b0d7720fa94a66e4540bbb. The affected component should be upgraded.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
