Vulnerability  ·  2026-10-11

TencentCloud Octop: low-privilege users can read plaintext LLM/voice provider API keys (CVSS 6.5)

VulnerabilityHigh impactGlobalCVE-2026-108581
Verified via NVD REST API (published 2026-10-10, VulnCheck). The endpoints return keys without ownership/role checks. Direct Exfil of LLM provider credentials from an AI orchestration product.
LLM provider API keys are the crown jewels of AI deployments — with them an attacker can burn inference budget, read model-call history, and pivot into the organization's AI spend.
The providers/voice-providers endpoints only validate the JWT, not authorization, so an authenticated low-privileged user retrieves plaintext LLM and voice provider API keys (CWE-862) and can abuse the upstream provider accounts at the victim's expense.
TencentCloud/Octop <= 1.0.2b6 (GET /api/providers, GET /api/voice/providers)
Apply the patched release (fix PRs in octop repo); restrict provider-key endpoints to admin roles and encrypt stored keys. See VulnCheck advisory.
NVD CVE-2026-108581NVD REST APIVulnCheck advisory
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →