What happened
Verified via NVD REST API (published 2026-10-10, VulnCheck). The endpoints return keys without ownership/role checks. Direct Exfil of LLM provider credentials from an AI orchestration product.
Why it matters
LLM provider API keys are the crown jewels of AI deployments — with them an attacker can burn inference budget, read model-call history, and pivot into the organization's AI spend.
Attack vector
The providers/voice-providers endpoints only validate the JWT, not authorization, so an authenticated low-privileged user retrieves plaintext LLM and voice provider API keys (CWE-862) and can abuse the upstream provider accounts at the victim's expense.
Affected systems
TencentCloud/Octop <= 1.0.2b6 (GET /api/providers, GET /api/voice/providers)
Mitigation
Apply the patched release (fix PRs in octop repo); restrict provider-key endpoints to admin roles and encrypt stored keys. See VulnCheck advisory.