Vulnerabilities
9 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-33655 +1 in the same advisory: …44342 | New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 0.12.0-alpha.1, the default SSRF protection configuration did not apply IP filtering to hostnames; with ApplyIPFilterForDomain disabled by default, URL validation checked domain allow/block rules but did not resolve a hostname and validate the resolved IP address, allowing authenticated users to configure Webhook, Bark, or Gotify notification URLs that point at an internal or metadata IP address. This issue is fixed in version 0.12.0-alpha.1. NVD description · AI analysis pending | 7.7 group max | <1% |
| — | ||
| CVE-2026-41432 +1 in the same advisory: …42339 | New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to version 0.12.10, a vulnerability exists in the Stripe webhook handler that allows an unauthenticated attacker to forge webhook events and credit arbitrary quota to their account without making any payment. This issue has been patched in version 0.12.10. NVD description · AI analysis pending | 8.2 group max | <1% | PoC |
| — | |
| CVE-2026-30886 +1 in the same advisory: …32879 | New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to version 0.11.4-alpha.2, an Insecure Direct Object Reference (IDOR) vulnerability in the video proxy endpoint (`GET /v1/videos/:task_id/content`) allows any authenticated user to access video content belonging to other users and causes the server to authenticate to upstream AI providers (Google Gemini, OpenAI) using credentials derived from tasks they do not own. The missing authorization check is a single function call — `model.GetByOnlyTaskId(taskID)` queries by `task_id` alone with no `user_id` filter, while every other task-lookup in the codebase enforces ownership via `model.GetByTaskId(userId, taskID)`. Version 0.11.4-alpha.2 contains a patch. NVD description · AI analysis pending | 6.5 group max | <1% | PoC |
| — | |
| CVE-2026-25591 +1 in the same advisory: …25802 | New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to version 0.10.8-alpha.10, a SQL LIKE wildcard injection vulnerability in the `/api/token/search` endpoint allows authenticated users to cause denial of service through resource exhaustion by crafting malicious search patterns. The token search endpoint accepts user-supplied `keyword` and `token` parameters that are directly concatenated into SQL LIKE clauses without escaping wildcard characters (`%`, `_`). This allows attackers to inject patterns that trigger expensive database queries. Version 0.10.8-alpha.10 contains a patch. NVD description · AI analysis pending | 7.1 group max | <1% | PoC |
| — | |
| CVE-2025-55573 | QuantumNous new-api v.0.8.5.2 is vulnerable to Cross Site Scripting (XSS). QuantumNous new-api v.0.8.5.2 is vulnerable to Cross Site Scripting (XSS). NVD description · AI analysis pending | 8.8 | <1% | PoC |
| — |