VulnWatch VulnWatch
← Back to dashboard
#

API Abuse

10 entries

Every API Abuse entry VulnWatch has indexed, sorted by publication date.

Subscribe to this tag's RSS feed

Unknown nvd

CVE-2026-15977: SGLang contains a credential leakage vulnerability in the /server_info endpoint, which will return API keys and SSL keyf

SGLang contains a credential leakage vulnerability in the /server_info endpoint, which will return API keys and SSL keyfile information when only the --admin-api-key is configured.

1 week ago
Critical github

9router has unauthenticated CRUD on /api/providers and Full API Key Leak via /api/usage/stats

--- title: Unauthenticated CRUD on /api/providers and Full API Key Leak via /api/usage/stats product: 9Router version:

API Abuse github copilot copilot openai
10.0
CVSS
1 month ago
High github

Coder's session token leaked to arbitrary hosts via `coder open app` for external workspace apps

### Summary `coder open app` opens external workspace-app URLs without validating the scheme or host. When an external app URL contains the `$SESSION_TOKEN` placeholder the CLI replaces it with the u...

API Abuse anthropic
7.7
CVSS
1 month ago
Critical github

Langroid: SQLChatAgent dangerous-function blocklist can be bypassed with quoted or schema-qualified pg_read_file calls

# SQLChatAgent `_validate_query` dangerous-pattern regex is bypassable via quoted/commented/qualified function names ## Summary The `SQLChatAgent` SQL-injection mitigation, with default `allow_dange...

0.0
CVSS
1 month ago
High github

Apify Model Context Protocol (MCP) server: Actor MCP path authority injection leaks Apify token

## Actor MCP path authority injection leaks Apify token ### Summary `@apify/actors-mcp-server` version `0.10.7` builds Actor standby URLs by directly concatenating a trusted base URL with an attacke...

SSRF API Abuse Agentic / MCP model context protocol mcp server
8.1
CVSS
1 month ago
Medium github

dbt MCP Server: Unauthenticated OAuth Context Endpoint Leaks dbt Platform Tokens

## Unauthenticated OAuth Context Endpoint Leaks dbt Platform Tokens ### Summary The local OAuth helper FastAPI server bundled with `dbt-mcp` exposes the `GET /dbt_platform_context` endpoint without...

6.8
CVSS
1 month ago
Critical github

Meta Ads MCP: Unauthenticated HTTP MCP Tool Execution Leaks Operator Meta Access Token

# Unauthenticated HTTP MCP Tool Execution Leaks Operator Meta Access Token | Field | Value | | ---------------- | ----- | | Repository | pipeboard-co/meta-ads-mcp | | Affected versio...

9.1
CVSS
1 month ago
Medium github

Open WebUI: Unauthenticated endpoint can trigger embedding generation (cost/DoS)

### Summary GET `/api/v1/memories/ef` is accessible without authentication and executes `request.app.state.EMBEDDING_FUNCTION(...)`. This allows any unauthenticated caller to trigger embedding generat...

6.5
CVSS
2 months ago
High github

opentelemetry-collector-contrib's azureauthextension Authenticate method does not validate bearer tokens, allowing auth bypass via replay

### Summary A server-side authentication bypass in `azureauthextension` allows any party who holds a single valid Azure access token for *any scope the collector's configured identity can mint for* t...

8.1
CVSS
3 months ago
Critical github

Unauthenticated Remote Code Execution in Langflow via Public Flow Build Endpoint

## Summary The `POST /api/v1/build_public_tmp/{flow_id}/flow` endpoint allows building public flows without requiring authentication. When the optional `data` parameter is supplied, the endpoint uses...

9.8
CVSS
4 months ago