CVE-2026-75760: AshAi vectorize change leaks raw embedding-provider errors, including credentials, in a user-facing error

Published Aug 31, 2026
·
Updated

Generation of Error Message Containing Sensitive Information vulnerability in ash-project ashai discloses provider request state and credentials in a user-facing validation error.

In AshAi.Changes.Vectorize, when the embedding provider call fails the change added a changeset error whose message inspected the raw error term (An error occurred while generating embeddings: #{inspect(error)}). A plain-string adderror produces an Ash.Error.Changes.InvalidChanges in the :invalid class, which AshJsonApi and AshGraphql render back to the caller. The embedding client's error term is not sanitized, so it can carry the request URL, the provider response body, and, for HTTP clients that keep the request in the error struct, the outbound Authorization header with the provider API key. Failures are attacker-reachable via oversized or malformed vectorized content. The fix logs the raw error and returns a generic message.

This issue affects ashai: from 0.1.0 before 1.0.0.

Affected Software

1 affected component
ash-project ash_ai<1.0.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade ash_ai to a version that resolves this vulnerability.

    Fixed in 1.0.0
  2. Operational

    Ensure the embedding-provider errors that may have included credentials are no longer logged to user-facing validation errors; after upgrading, review logs for any previously exposed credentials/state and treat them as potentially compromised.

Event History

Aug 31, 2026
CVE Published
via MITRE·01:09 AM
Data Sourced
via MITRE·01:09 AM
DescriptionWeakness

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203