Impact
The vulnerability resides in the _download_image_data_url function of HKUDS nanobot's Provider‑returned Image URL Handler. It permits a server‑side request forgery (SSRF) that can be triggered remotely by supplying a specially crafted image URL. The flaw allows the vulnerable component to generate outbound HTTP(S) requests on behalf of the server, potentially reaching internal services, exposing sensitive data, or executing harmful actions on networked resources. This is a typical injection‑type weakness (CWE‑918) affecting confidentiality and integrity of systems accessed via the forged requests.
Affected Systems
HKUDS nanobot versions up to and including 0.2.1 are affected. The affected code resides in the nanobot providers image_generation module. No other vendors or products are reported to be impacted.
Risk and Exploitability
The CVSS score of 5.3 indicates a moderate severity. EPSS information is not available, and the vulnerability is not listed in the CISA KEV catalog. The attack vector is remote; as the flaw is triggered by a provider‑supplied URL, an adversary can initiate the request from an external network. The exploit has been publicly disclosed and patching is recommended.
OpenCVE Enrichment