In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade Umbraco.AI to version 1.14.0 or higher.
Affected versions of this package are vulnerable to Information Exposure in the process that handles application configuration values when a user with elevated privileges accesses the AI section of the backoffice and a specific custom AI provider is configured. An attacker can access confidential information by leveraging these permissions and configurations. This is only exploitable if the attacker has access to the AI section of the backoffice and a specific custom AI provider is in use.