CVE-2026-32879: New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Starting in version 0.10.0, a logic flaw in the universal secure verification flow allows an...

Added to the CISA Known Exploited Vulnerabilities catalog on 23 Mar 2026. Vendor: AI/ML. Product: artificial intelligence. CVSS score: 4.9.

New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Starting in version 0.10.0, a logic flaw in the universal secure verification flow allows an authenticated user with a registered passkey to satisfy secure verification without completing a We...

Required action: Review and patch if applicable to your AI infrastructure.