NEXULEAN Firebase and Web3Forms API Key Exposure Vulnerability

Vulnerability

A vulnerability in NEXULEAN prior to version 2.0.0 allowed for the exposure of Firebase and Web3Forms API keys. This leakage could be exploited to interact with backend services without authentication, potentially leading to unauthorized access to application resources and user data. The vulnerability has been addressed in version 2.0.0.

Impact

The exposed Firebase and Web3Forms keys allowed unauthenticated access to application resources, which could result in unauthorized interactions with database services, potential exposure of user-related information, and misuse of third-party integration credits.

Remediation

The vulnerability has been fully resolved in NEXULEAN version 2.0.0, which includes key rotation and enhanced backend security measures. Users should update to this version.

Added: Mar 12, 2026, 7:28 PM
Updated: Mar 12, 2026, 7:28 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
4.4
exploitability
5.2
remediation
0.0
relevance
3.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.