Site icon API Security Blog

@musistudio/claude-code-router has improper CORS configuration

image
Impact Due to improper Cross-Origin Resource Sharing (CORS) configuration, there is a risk that user API Keys or equivalent credentials may be exposed to untrusted domains. Attackers could exploit this misconfiguration to steal credentials, abuse accounts, exhaust quotas, or access sensitive data. Patches The issue has been patched in…Read More

Exit mobile version