#quantumnous
A unified AI model hub for aggregation & distribution. It supports cross-converting various LLMs into OpenAI-compatible, Claude-compatible, or Gemini-compatible formats. A centralized gateway for personal and enterprise model management
#golang

github.com/QuantumNous...
GitHub - QuantumNous/new-api: A unified AI model hub for aggregation & distribution. It supports cross-converting various LLMs into OpenAI-compatible, Claude-compatible, or Gemini-compatible formats. A centralized gateway for personal and enterprise model management. 🍥
A unified AI model hub for aggregation & distribution. It supports cross-converting various LLMs into OpenAI-compatible, Claude-compatible, or Gemini-compatible formats. A centralized gatew...
github.com
May 29, 2026 at 3:49 AM
new-api is an open-source project that serves as a centralized gateway for artificial intelligence models.
QuantumNous launches new-api, a self-hosted gateway to centralize multiple generative AI providers - Sinaptica
new-api is an open-source project that serves as a centralized gateway for artificial intelligence models. Instead of separately integrating each OpenAI, Claude
sinapti.ca
August 26, 2026 at 10:00 PM
new-api es un proyecto de código abierto que funciona como puerta de enlace centralizada para modelos de inteligencia artificial.
QuantumNous lanza new-api, gateway autohospedado para centralizar múltiples proveedores de IA generativa - Sinaptica
new-api es un proyecto de código abierto que funciona como puerta de enlace centralizada para modelos de inteligencia artificial. En lugar de integrar por separ
sinapti.ca
August 26, 2026 at 10:00 PM
CVE-2026-71479 - new-api
The New API's billing system has a flaw that can cause users to receive unearned credits. This can happen when a large value is used in a calculation, resulting in a…

Too many irrelevant or confusing CVEs? Use stackflag.com

#newapi #quantumnous #Golang #CVE #infosec
CVE-2026-71479: New API: Users Can Get Unearned Credits Due to Billing Error
The New API's billing system has a flaw that can cause users to receive unearned credits.
stackflag.com
August 17, 2026 at 8:10 PM
CVE-2026-64859 - new-api
A security issue in New API allows an admin user to access sensitive system configuration APIs by obtaining the root user's access token. This is a problem because the…

Too many irrelevant or confusing CVEs? Use stackflag.com

#newapi #quantumnous #Golang #CVE #infosec
CVE-2026-64859: New API Leaks Root User Access Token
A security issue in New API allows an admin user to access sensitive system configuration APIs by obtaining the root user's access token.
stackflag.com
August 17, 2026 at 8:00 PM
🚨 EUVD-2026-42749
📊 7.7/10
🏢 QuantumNous

📝 New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 0.12.0-alpha.1, the default SSRF pro...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42749

#cybersecurity #infosec #cve #euvd
July 10, 2026 at 12:00 AM
🚨 EUVD-2026-42750
📊 5.3/10
🏢 QuantumNous

📝 New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 0.12.0-alpha.1, the email and WeChat...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42750

#cybersecurity #infosec #cve #euvd
July 10, 2026 at 12:00 AM
🚀 GitHub Intelligence Drop

new-api (Go • 🟢)
⭐ 41K → https://github.com/QuantumNous/new-api

headscale (Go • 🟢)
⭐ 40.9K → https://github.com/juanfont/headscale

⚡ Only signal. Zero noise.
July 3, 2026 at 1:47 PM
You can now share your thoughts on vulnerability CVE-2025-62155 in Vulnerability-Lookup:
https://vulnerability.circl.lu/vuln/CVE-2025-62155

QuantumNous - new-api

#vulnerabilitylookup #vulnerability #cybersecurity #bot
cvelistv5 - CVE-2025-62155
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.
vulnerability.circl.lu
November 25, 2025 at 12:05 AM
February 24, 2026 at 10:17 AM
April 22, 2025 at 7:27 AM
QuantumNous new-api (<0.10.8-alpha.10) hit by HIGH-severity SQL wildcard injection. Authenticated users can trigger DoS via /api/token/search. Upgrade or sanitize inputs now! https://radar.offseq.com/threat/cve-2026-25591-cwe-943-improper-neutralization-of--2ce4358a #OffSeq #Vulnerability #AI
CVE-2026-25591: CWE-943: Improper Neutralization of Special Elements in Data Que
QuantumNous new-api, an AI asset management and large language model gateway system, suffers from a SQL LIKE wildcard injection vulnerability identified as CVE-2026-25591. The flaw exists in the /api/token/search endpoint, which accepts use
radar.offseq.com
February 24, 2026 at 9:00 AM
High-severity XSS in QuantumNous new-api (<0.10.8-alpha.9) lets attackers run scripts via MarkdownRenderer. Patch to 0.10.8-alpha.9+ & harden your AI stack. https://radar.offseq.com/threat/cve-2026-25802-cwe-79-improper-neutralization-of-i-48d25c61 #OffSeq #XSS #AIsecurity
CVE-2026-25802: CWE-79: Improper Neutralization of Input During Web Page Generat
CVE-2026-25802 is a Cross-Site Scripting (XSS) vulnerability classified under CWE-79, affecting the QuantumNous new-api product, specifically versions before 0.10.8-alpha.9. The vulnerability arises from improper neutralization of input dur
radar.offseq.com
February 24, 2026 at 3:00 AM
QuantumNous new-api self Endpoint topup.go SearchAllTopUps sql injectionA wea... A weakness has been identified in QuantumNous new-api up to 0.12.1. The impacted element is the function SearchUserT...

Origin | Interest | Match
CVE-2026-9305 | THREATINT
CVE-2026-9305: A weakness has been identified in QuantumNous new-api up to 0.12.1. The impacted element is the function SearchUserTopUps/SearchAllTopUps of the file model/topup.go of the component self Endpoint. This manipulation causes sql injection. The attack can be initiat...
cve.threatint.eu
May 23, 2026 at 3:41 PM
CVE-2025-62155 - QuantumNous New API Has SSRF Bypass
CVE ID : CVE-2025-62155

Published : Nov. 25, 2025, 12:15 a.m. | 59 minutes ago

Description : New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to version 0.9...
CVE-2025-62155 - QuantumNous New API Has SSRF Bypass
New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to version 0.9.6, a recently patched SSRF vulnerability contains a bypass method that can bypass the existing security fix and still allow SSRF to occur. Because the existing fix only applies security restrictions …
cvefeed.io
November 25, 2025 at 1:32 AM
CVE-2025-55573 - QuantumNous new-api Remote Cross Site Scripting (XSS)
CVE ID : CVE-2025-55573

Published : Aug. 22, 2025, 3:15 p.m. | 50 minutes ago

Description : QuantumNous new-api v.0.8.5.2 is vulnerable to Cross Site Scripting (XSS).

Severity: 8.8 | HIGH

Visit t...
CVE-2025-55573 - QuantumNous new-api Remote Cross Site Scripting (XSS)
QuantumNous new-api v.0.8.5.2 is vulnerable to Cross Site Scripting (XSS).
cvefeed.io
August 22, 2025 at 4:38 PM
Free and open-source (AGPLv3). Integrates with OpenAI, Claude, Gemini, DeepSeek, Qwen, Midjourney and more. Docker deploy + API docs on the listing. www.everydev.ai/tools/new-api
New API - Open Source Unified AI Gateway | EveryDev.ai
New API is an open-source LLM gateway and AI asset management system built by QuantumNous, licensed under AGPLv3. It enables developers and…
www.everydev.ai
June 12, 2026 at 9:29 PM
🚨 EUVD-2026-31542
📊 6.3/10
🏢 QuantumNous

📝 A security vulnerability has been detected in QuantumNous new-api up to 0.12.1. This affects the function RelayMidjourneyImage/GetByOnlyMJId of the fi...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-31542

#cybersecurity #infosec #cve #euvd
May 23, 2026 at 4:00 PM
🚨 EUVD-2026-31541
📊 5.3/10
🏢 QuantumNous

📝 A weakness has been identified in QuantumNous new-api up to 0.12.1. The impacted element is the function SearchUserTopUps/SearchAllTopUps of the file ...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-31541

#cybersecurity #infosec #cve #euvd
May 23, 2026 at 3:01 PM
🚨 EUVD-2026-14518
📊 6.5/10
🏢 QuantumNous

📝 New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to version 0.11.4-alpha.2, an Insecure ...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-14518

#cybersecurity #infosec #cve #euvd
March 23, 2026 at 9:01 PM
🚨 EUVD-2026-14522
📊 4.9/10
🏢 QuantumNous

📝 New API has passkey-based secure step-up verification bypass for root-only channel secret disclosure

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-14522

#cybersecurity #infosec #cve #euvd
March 23, 2026 at 9:01 PM
QuantumNous new-api Midjourney Image Relay Endpoint relay-router.go GetByOnly... A security vulnerability has been detected in QuantumNous new-api up to 0.12.1. This affects the function RelayMidjo...

Origin | Interest | Match
CVE-2026-9306 | THREATINT
CVE-2026-9306: A security vulnerability has been detected in QuantumNous new-api up to 0.12.1. This affects the function RelayMidjourneyImage/GetByOnlyMJId of the file router/relay-router.go of the component Midjourney Image Relay Endpoint. Such manipulation leads to authoriza...
cve.threatint.eu
May 23, 2026 at 3:41 PM
A new AI review! QuantumNous/new-api ⭐3.5/5.0
**New API** is a feature-rich LLM gateway and “AI asset management” platform implemented primarily in **Go** (Gin) with a sizable **web UI** (React/Vite ecosystem) and optional **Electron** desktop packaging.
https://gitrated.com/QuantumNous/new-api
April 3, 2026 at 2:33 AM