← advisory ledger

ADVISORY UNAUTH-2026-0025
TYPE exposure-class
PRODUCT OpenAI-compatible API
SEVERITY HIGH

HIGH

OpenAI-compatible API exposed without authentication

published 2026-08-05 · updated 2026-08-05

Why it matters

An anonymous /v1/models (and usually /v1/chat/completions) surface lets strangers inventory models and burn inference — whether the backend is vLLM-shaped, a LiteLLM/OpenRouter-style proxy, or another OpenAI-compatible server we have not named yet.

What a probe sees

GET /v1/models answers an OpenAI-style model list without an API key.

Internet-facing exposure — observable from the public internet with GET-only probes (the same probes unauth.dev sends).

no-auth-by-design

In the wild

No honeypot telemetry for this service yet (in_the_wild: null in the dataset). We do not invent numbers. The block appears when the honeypot has real data.

Fix it

Fix card: openai-compat-exposed →

References

Cite this record

unauth.dev advisory UNAUTH-2026-0025 — published 2026-08 · CC-BY 4.0

Canonical URL: https://unauth.dev/advisories/UNAUTH-2026-0025. This record is part of the unauth.dev advisory dataset, published under CC-BY 4.0: attribute "unauth.dev / Raúl Acedo". Schema: additive-only within v1; this id will never be renumbered or reused.