---
id: GHSA-q3v2-xj35-9grx
title: Umbraco.AI discloses sensitive application configuration values
summary: Umbraco.AI discloses sensitive application configuration values
severity: medium
cvss: 4.9
cwe:
  - CWE-200
vendor: Umbraco
product: Umbraco.AI
ecosystem: nuget
affected:
  - Umbraco.AI <= 1.13.0
patched:
  - Umbraco.AI 1.14.0
published: '2026-07-14'
updated: '2026-07-14'
source: GHSA
sourceUrl: 'https://github.com/advisories/GHSA-q3v2-xj35-9grx'
references:
  - url: >-
      https://github.com/umbraco/Umbraco.AI/security/advisories/GHSA-q3v2-xj35-9grx
  - url: 'https://github.com/umbraco/Umbraco.AI/releases/tag/2026.06.2'
  - url: >-
      https://umbraco.com/blog/security-advisory-june-4-2026-security-patch-for-umbracoai-is-now-available
  - url: 'https://github.com/advisories/GHSA-q3v2-xj35-9grx'
tags:
  - ghsa
  - nuget
ingestedAt: '2026-07-14T20:39:11.284Z'
---

## Overview

### Impact
Under certain configurations, a user with elevated privileges may be able to cause sensitive application configuration values, potentially including secret material such as credentials, to be disclosed. Successful exploitation could expose confidential information and, depending on what the affected installation stores in configuration, enable further compromise. Exploitation requires access to the AI section of the backoffice and a specific custom AI provider, which limits real-world exposure.

### Patches
Patched in 1.14.0

### Workarounds
Since the patch is a breaking change and requires a version jump, it is not recommended to try and implement a workaround.

### Resources
* Announcement Blog Post: https://umbraco.com/blog/security-advisory-june-4-2026-security-patch-for-umbracoai-is-now-available/

## Affected packages

- `Umbraco.AI <= 1.13.0`

## Remediation

Upgrade to a patched release:

- `Umbraco.AI 1.14.0`
