Helicone through v2025.08.21-1 contains a server-side request forgery vulnerability in the Jawn webhook sender that allows authenticated organization users to reach internal services by using hostnames resolving to private addresses. This vulnerability can lead to potential blind POST requests to internal HTTPS services, exposure of internal services to authenticated users, and possible DNS rebinding atta [truncated]
A server-side request forgery vulnerability was found in Helicone ai-gateway up to 0.2.0-beta.30. The vulnerability affects the build_target_url function in ai-gateway/src/dispatcher/service.rs. This function is part of the AWS Metadata Service component. The vulnerability can be exploited remotely by manipulating the extracted_path_and_query argument. The exploit has been published and may be used. The v [truncated]