{"id":"GO-2026-6242","summary":"New API: Integer overflow in quota billing yields negative charges (self-crediting) in github.com/QuantumNous/new-api","details":"New API: Integer overflow in quota billing yields negative charges (self-crediting) in github.com/QuantumNous/new-api","aliases":["CVE-2026-71479","GHSA-8r8v-xf7q-rcpr"],"modified":"2026-08-18T15:00:25.674073636Z","published":"2026-08-18T14:32:29Z","database_specific":{"review_status":"UNREVIEWED","url":"https://pkg.go.dev/vuln/GO-2026-6242"},"references":[{"type":"ADVISORY","url":"https://github.com/QuantumNous/new-api/security/advisories/GHSA-8r8v-xf7q-rcpr"},{"type":"FIX","url":"https://github.com/QuantumNous/new-api/commit/c9943d37ad93477dd937fc4901cc3c4e0fd8aaab"},{"type":"FIX","url":"https://github.com/QuantumNous/new-api/commit/d0bd8aac742d1e160a5ca61743fe35f4fff880e8"},{"type":"WEB","url":"https://github.com/QuantumNous/new-api/releases/tag/v1.0.0-rc.18"}],"affected":[{"package":{"name":"github.com/QuantumNous/new-api","ecosystem":"Go","purl":"pkg:golang/github.com/QuantumNous/new-api"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.0.0-rc.18"}]}],"ecosystem_specific":{},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-6242.json"}}],"schema_version":"1.9.0"}