Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.8

CVE-2026-56259: Crawl4AI LLM Credential Exposure via Malicious API Calls

CVE-2026-56259 CVE-2026-56259
Summary

Crawl4AI versions before 0.8.8 contain a security flaw that allows attackers to steal sensitive credentials. This can happen if an attacker sends malicious API requests to the Crawl4AI server. To protect yourself, update to the latest version of Crawl4AI and ensure that sensitive credentials are stored securely.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
crawl4ai crawl4ai < 0.8.8
Original title
Crawl4AI - LLM Credential Exfiltration via base_url and Environment Variable Resolution
Original description
Crawl4AI before 0.8.8 contains credential exfiltration vulnerabilities in the Docker API server that allow attackers to redirect LLM API calls to attacker-controlled endpoints and read arbitrary environment variables. Attackers can exploit the unauthenticated /md, /llm, and /llm/job endpoints by supplying a malicious base_url parameter and setting api_token to env:VARIABLE_NAME to exfiltrate provider API keys and server secrets including JWT SECRET_KEY for authentication bypass.
nvd CVSS3.1 8.2
nvd CVSS4.0 8.8
Vulnerability type
CWE-200 Information Exposure
Published: 12 Jul 2026 · Updated: 20 Jul 2026 · First seen: 12 Jul 2026