WhisperX tag archive

#LLM API keys

This page collects WhisperX intelligence signals tagged #LLM API keys. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-30 10:54:11 · GitHub Issues

1. Critical Vulnerability in OpenClaw Skill Installer Exposes LLM API Keys to Stealth Theft

A critical security flaw in OpenClaw's third-party Skill marketplace allows malicious actors to execute arbitrary shell commands on a user's system during Skill installation — without any sandbox isolation, permission prompt, or code review. The vulnerability, classified as OWASP LLM Top 10: LLM03:2025 (Supply Chain Vu...