Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, HTTP-emitting modules including src/core/modules/thirdparty/developer/http/requests.py, core.api.httpget, core.api.httppost, graphql.query, graphql.mutation, monitor.httpcheck, communication.slacksend, notification.discord.sendmessage, notification.slack.sendmessage, notification.teams.sendmessage, ai.visionanalyze, verify.visualdiff, browser.proxyrotate, and the agent and llm inline baseurl branch fetch caller-controlled URLs without validateurlwithenvconfig, allowing SSRF to internal or metadata endpoints. This issue is fixed in version 2.26.7.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/67xxx/CVE-2026-67428.json",
"cna_assigner": "GitHub_M",
"cwe_ids": [
"CWE-918"
]
}