CVE-2026-41487

5.4 MEDIUM
Published: May 08, 2026 Modified: May 13, 2026
View on NVD

Description

Langfuse is an open source large language model engineering platform. From version 3.68.0 to before version 3.167.0, there is a role-based-access control flaw in the LLM connection update flow. An authenticated, low-privileged user of role β€œmember” in a project could request the update of an existing LLM connection to an attacker-controlled baseUrl, causing Langfuse to reuse the stored provider secret and redirect the test request to an attacker-controlled endpoint. This could expose the plaintext provider LLM API key for that connection. The attack is only possible if a user is already part of a project and has β€œmember” scoped access. This issue has been patched in version 3.167.0.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

CVSS v3.x Details

0.0 Low Medium High Critical 10.0
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
https://github.com/langfuse/langfuse/pull/13027
Source: security-advisories@github.com
Issue Tracking Patch
https://github.com/langfuse/langfuse/pull/13055
Source: security-advisories@github.com
Issue Tracking Patch
https://github.com/langfuse/langfuse/releases/tag/v3.167.0
Source: security-advisories@github.com
Release Notes
https://github.com/langfuse/langfuse/security/advisories/GHSA-2524-j966-gfgh
Source: security-advisories@github.com
Mitigation Patch Vendor Advisory

6 reference(s) from NVD

Quick Stats

CVSS v3 Score
5.4 / 10.0
EPSS (Exploit Probability)
0.2%
8th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

langfuse