Impact
The flaw in the ws endpoint of gpt‑researcher allows an attacker to control the source_urls parameter, causing the server to send HTTP requests to arbitrary destinations. This can lead to unauthorized data access, credential theft, or reconnaissance against internal services. The problem is identified as a server‑side request forgery (CWE‑918).
Affected Systems
The vulnerability affects the open‑source gpt‑researcher utility maintained under assafelovic. Versions up to 3.4.3 are vulnerable; newer releases have not been confirmed to contain a fix. The tool is often deployed in research environments that expose the ws endpoint.
Risk and Exploitability
The CVSS score of 6.9 indicates moderate severity; no public EPSS score is available, and the issue is not listed in CISA's Known Exploited Vulnerabilities catalog. Nonetheless, the flaw can be triggered remotely through crafted source_urls without authentication, making exposed deployments susceptible to compromise.
OpenCVE Enrichment