WhisperX tag archive

#api-credentials

This page collects WhisperX intelligence signals tagged #api-credentials. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-28 02:54:09 · GitHub Issues

1. Bundled Skills Vulnerability Exposes Seven API Credentials in Plaintext via Process Memory Access

A critical security flaw in Bundled Skills, a component used by AI coding agents, has exposed seven API credentials—including keys for OpenAI, Notion, Google, and other services—in plaintext through environment variables and configuration files. The vulnerability carries a CVSS score of 7.5 (High), classified under CWE...