CVE-2026-6604
Last modified
CVE-2026-6604 is a high-severity vulnerability rated 7.3/10 on the CVSS scale. A vulnerability was identified in modelscope agentscope up to 1.0.18. Affected by this issue is the function _parse_url/prepare_image/openai_audio_to_text of the file src/agentscope/tool/_multi_modality/_openai_tools.py of the component Cloud Metadata Endpoint. EPSS estimates a 0.28% chance of exploitation in the next 30 days.
Description
A vulnerability was identified in modelscope agentscope up to 1.0.18. Affected by this issue is the function _parse_url/prepare_image/openai_audio_to_text of the file src/agentscope/tool/_multi_modality/_openai_tools.py of the component Cloud Metadata Endpoint. Such manipulation of the argument image_url/audio_file_url leads to server-side request forgery. The attack may be performed from remote. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-6604?
How severe is CVE-2026-6604?
How do I fix CVE-2026-6604?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-66034libssh2 through 1.11.1, fixed in commit a13bb6c, contains a …7.7
- CVE-2026-66035libssh2 through 1.11.1, fixed in commit 42e33d8, contains a …7.7
- CVE-2026-66036FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a he…8.8
- CVE-2026-66037FFmpeg through 8.1.2, fixed in commit 5d7112c, contains an u…5.5
- CVE-2026-66038FFmpeg through 8.1.2, fixed in commit 8670835, contains an i…6.5
- CVE-2026-66039FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a si…7.8
- CVE-2026-66040FFmpeg through 8.1.2, fixed in commit b506faf, contains a he…8.8
- CVE-2026-66041FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains …7.8
- CVE-2026-6605A security flaw has been discovered in modelscope agentscope…7.3
- CVE-2026-66050NitroShare Desktop through 0.3.4 contains a path traversal v…8.7
- CVE-2026-66051Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-66053Improper Validation of Certificate with Host Mismatch vulner…5.9
Are you affected by CVE-2026-6604?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
