← Back to the live CVE advisory feed

CVE-2026-81027: one-api

Severity
8.4 (HIGH)
Vendor
SONGQUANPENG
Affected versions
0 through 0.6.10
Patch status
Unknown
Published
2026-08-26T16:16:45.253
Modified
2026-08-26T18:17:05.420

Why it matters

This matters because the issue affects identity or token handling. Successful exploitation could allow unauthorized authentication, client manipulation, or access to protected services.

Recommended admin actions

  • Review and patch based on exposure, asset criticality, and business impact.
  • Compare installed versions against the affected version range in the advisory.

Technical summary

one-api gates one of its two channel-pinning paths and not the other. middleware/auth.go permits a request to name a specific channel either through a suffix on the API key or through a URL path parameter. The suffix path is reached only after model.IsAdmin succeeds and otherwise rejects the caller, while the path-parameter branch sets the selected-channel value from c.Param("channelid") with no role check at all. The route carrying that parameter sits behind token authentication only, so any account holding a valid API token reaches it. The value flows to the distributor, which loads the channel by integer identifier with no scoping to the caller's user or group, and then sets the outbound Authorization header to that channel's stored key and directs the request at the channel's base URL. A low-privilege account can therefore pin any channel by incrementing an identifier, causing the server to make upstream requests bearing an operator-configured provider key the account was never granted, and bypassing both the per-group restriction and the channel's model allowlist.

CVE data is sourced from NVD/CNA records and optional enrichment. Validate against the vendor advisory before taking production action.

VULNERABILITY PULSE

LAST UPDATED: AUG 27, 2026 12:00 AM UTC
396 RECORDS
SECURE FEED ACTIVE
AFFECTED PRODUCT ACTION
CVE-2026-77537
UniFi Protect Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
10
CRITICAL
VIEW RECORD
CVE-2026-77550
UniFi OS Server
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
10
CRITICAL
VIEW RECORD
CVE-2026-77554
UniFi Talk Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
10
CRITICAL
VIEW RECORD
CVE-2026-65956
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
10
CRITICAL
VIEW RECORD
CVE-2026-77533
UniFi Protect Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-77534
UniFi OS Server
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-77536
UniFi OS Server
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-77543
UniFi Access Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-77546
UniFi Access Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-77547
UniFi Access Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-77548
UniFi Protect Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-77553
UniFi Access Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.9
CRITICAL
VIEW RECORD
CVE-2026-19632
TranslatePress – Translate Multilingual sites with AI Translation
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-58095
Product identification pending
Reporter: SECTEAM
9.8
CRITICAL
VIEW RECORD
CVE-2026-58096
Product identification pending
Reporter: SECTEAM
9.8
CRITICAL
VIEW RECORD
CVE-2026-18431
Avada (Fusion) Builder
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-18080
ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-77552
UniFi Enterprise Audio/Video Bridge
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.8
CRITICAL
VIEW RECORD
CVE-2026-77557
UniFi Protect AI Key
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.8
CRITICAL
VIEW RECORD
CVE-2026-54569
senaite.core
Reporter: SECURITY-ADVISORIES
9.8
CRITICAL
VIEW RECORD
CVE-2026-60004 EXPLOITED
Product identification pending PATCH
Reporter: CVE
9.8
CRITICAL
VIEW RECORD
CVE-2026-77532
EdgeMAX EdgeSwitch
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.6
CRITICAL
VIEW RECORD
CVE-2026-54523
kyverno PATCH
Reporter: SECURITY-ADVISORIES
9.6
CRITICAL
VIEW RECORD
CVE-2026-12717
Product identification pending PATCH
Reporter: F45CBF4E-4146-4068-B7E1-655FFC2C548C
9.4
CRITICAL
VIEW RECORD
CVE-2026-80202
Product identification pending PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-15203
iC7-Automation SP
Reporter: D7FF35AF-CF88-454C-BAB9-AF60602F10F8
9.3
CRITICAL
VIEW RECORD
CVE-2026-80235
Product identification pending
Reporter: TWCERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-59683
Product identification pending
Reporter: MEISSNER
9.3
CRITICAL
VIEW RECORD
CVE-2026-80349
TarsWeb
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-80203
grav PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-80204
Product identification pending PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-80428
ILIAS
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81032
nebula
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-19485
Product identification pending PATCH
Reporter: F45CBF4E-4146-4068-B7E1-655FFC2C548C
9.3
CRITICAL
VIEW RECORD
CVE-2026-65641
One
Reporter: SUPPORT
9.3
CRITICAL
VIEW RECORD
CVE-2026-75062
Product identification pending PATCH
Reporter: CVE-COORDINATION
9.2
CRITICAL
VIEW RECORD
CVE-2026-77535
UniFi Network Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.1
CRITICAL
VIEW RECORD
CVE-2026-77539
UniFi OS Server
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.1
CRITICAL
VIEW RECORD
CVE-2026-77540
UniFi OS Server
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.1
CRITICAL
VIEW RECORD
CVE-2026-77541
UniFi Network Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.1
CRITICAL
VIEW RECORD
CVE-2026-77542
UID Enterprise Agent
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9.1
CRITICAL
VIEW RECORD
CVE-2026-75896
Product identification pending PATCH
Reporter: ILETISIM
9.1
CRITICAL
VIEW RECORD
CVE-2026-70419
Product identification pending
Reporter: SECURITY_ALERT
9.1
CRITICAL
VIEW RECORD
CVE-2026-77545
UniFi OS Server
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9
CRITICAL
VIEW RECORD
CVE-2026-77549
UniFi OS Server
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9
CRITICAL
VIEW RECORD
CVE-2026-77551
UniFi Connect Display Cast Pro
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
9
CRITICAL
VIEW RECORD
CVE-2026-79921
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.9
HIGH
VIEW RECORD
CVE-2026-75977
Mang Board WP
Reporter: SECURITY
8.8
HIGH
VIEW RECORD
CVE-2026-78236
Admin By Request (ABR)
Reporter: 5F57B9BF-260D-4433-BF07-B6A79E9BB7D4
8.8
HIGH
VIEW RECORD
CVE-2026-80236
Product identification pending
Reporter: TWCERT
8.8
HIGH
VIEW RECORD
CVE-2026-18794
Product identification pending
Reporter: MEISSNER
8.8
HIGH
VIEW RECORD
CVE-2026-19042
Product identification pending PATCH
Reporter: PSIRT
8.8
HIGH
VIEW RECORD
CVE-2026-59682
Product identification pending
Reporter: MEISSNER
8.8
HIGH
VIEW RECORD
CVE-2026-68861
Product identification pending
Reporter: SECURITY_ALERT
8.8
HIGH
VIEW RECORD
CVE-2026-74770
Product identification pending
Reporter: SECURITY_ALERT
8.8
HIGH
VIEW RECORD
CVE-2026-80191
GROWI
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80193
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80194
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80195
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80196
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80197
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80198
kimai PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-77693
Order Tip for WooCommerce PATCH
Reporter: CONTACT
8.7
HIGH
VIEW RECORD
CVE-2026-80237
Product identification pending
Reporter: TWCERT
8.7
HIGH
VIEW RECORD
CVE-2026-80347
mcp-fetch
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80348
TarsWeb
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-80205
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-73108
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-75960
Product identification pending
Reporter: ICS-CERT
8.7
HIGH
VIEW RECORD
CVE-2026-76784
HS103P3 / HS103P4 v5
Reporter: F23511DB-6C3E-4E32-A477-6AA17D310630
8.7
HIGH
VIEW RECORD
CVE-2026-65646
Plesk
Reporter: SUPPORT
8.7
HIGH
VIEW RECORD
CVE-2026-65647
Plesk Migrator
Reporter: SUPPORT
8.7
HIGH
VIEW RECORD
CVE-2026-77298
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-47665
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-52776
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.6
HIGH
VIEW RECORD
CVE-2026-80192
Product identification pending PATCH
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-80214
librenms
Reporter: AB69C47F-B95E-4BF2-B2D9-4B1FD1B24B4A
8.6
HIGH
VIEW RECORD
CVE-2026-80233
Product identification pending
Reporter: TWCERT
8.6
HIGH
VIEW RECORD
CVE-2026-12587
Virtuagym
Reporter: CVE-COORDINATION
8.6
HIGH
VIEW RECORD
CVE-2026-54511
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.6
HIGH
VIEW RECORD
CVE-2026-80427
bestzip
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-81031
idurar-erp-crm
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-58474
Product identification pending PATCH
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-43621
Product identification pending PATCH
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-55182
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.6
HIGH
VIEW RECORD
CVE-2026-65642
Product identification pending
Reporter: SUPPORT
8.6
HIGH
VIEW RECORD
CVE-2026-54606
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.5
HIGH
VIEW RECORD
CVE-2026-81029
OpenMetadata
Reporter: DISCLOSURE
8.5
HIGH
VIEW RECORD
CVE-2026-81036
stalwart
Reporter: DISCLOSURE
8.5
HIGH
VIEW RECORD
CVE-2026-64632
ONE
Reporter: SUPPORT
8.5
HIGH
VIEW RECORD
CVE-2026-76148
CorvusSKK
Reporter: VULTURES
8.4
HIGH
VIEW RECORD
CVE-2026-81027
one-api
Reporter: DISCLOSURE
8.4
HIGH
VIEW RECORD
CVE-2026-15973
Product identification pending
Reporter: HELP
8.4
HIGH
VIEW RECORD
CVE-2026-29988
AM102/102L V2
Reporter: CVE
8.3
HIGH
VIEW RECORD
CVE-2026-81034
netmaker
Reporter: DISCLOSURE
8.3
HIGH
VIEW RECORD
CVE-2026-18664
Product identification pending
Reporter: SEP
8.2
HIGH
VIEW RECORD
CVE-2026-19401
Product identification pending
Reporter: SEP
8.2
HIGH
VIEW RECORD
CVE-2026-19538
Product identification pending
Reporter: SEP
8.2
HIGH
VIEW RECORD
CVE-2026-77538
UniFi Connect Application
Reporter: FE490CE8-0395-4072-90D8-2707E1BDF984
8.2
HIGH
VIEW RECORD
CVE-2026-80206
Product identification pending PATCH
Reporter: DISCLOSURE
8.2
HIGH
VIEW RECORD

About the Vulnerability Pulse CVE Feed

The Vulnerability Pulse feed tracks live CVE advisories sourced from the National Vulnerability Database and vendor security disclosures. It is designed for SOC analysts, IT administrators, and security teams who need a fast, filterable view of current vulnerabilities without digging through raw NVD data.

How to Use the CVE Advisory Tracker

Use the severity filters to narrow results to Critical or High priority vulnerabilities. Filter by vendor to focus on software and hardware relevant to your environment. Export to CSV for reporting, ticketing, or patch prioritization workflows.

What Is a CVE Advisory?

A CVE (Common Vulnerabilities and Exposures) advisory is a public disclosure of a security vulnerability assigned a unique identifier by MITRE. Advisories include severity scores (CVSS), affected versions, and remediation guidance. Monitoring CVE advisories is a core function of vulnerability management programs and SOC operations.

CVE Analysis & Writeups

For in-depth analysis of specific vulnerabilities, visit the IT Knowledge Bases blog for CVE breakdowns, exploitation analysis, and remediation guidance written for security practitioners.