CVE-2025-48491

LOW

Project AI <pre-beta - Info Disclosure

Title source: llm
STIX 2.1

Description

Project AI is a platform designed to create AI agents. Prior to the pre-beta version, a hardcoded API key was present in the source code. This issue has been patched in the pre-beta version.

Scores

CVSS v4 2.7
EPSS 0.0078
EPSS Percentile 73.8%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:U

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-798
Status published
Products (1)
aryan6673/project-ai < pre-beta
Published May 30, 2025
Tracked Since Feb 18, 2026