Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting berriai.
- CVE-2026-12799BerriAI litellm Incomplete Fix CVE-2025-0628 internal_user_endpoints.py ui_view_users improper authorization4.3
- CVE-2026-12798BerriAI litellm MCP OpenAPI Spec Loader openapi_to_mcp_generator.py load_openapi_spec_async server-side request forgery6.3
- CVE-2026-12797BerriAI litellm Completions banned_keywords.py async_pre_call_hook authorization6.3
- CVE-2026-12796BerriAI litellm SSO Authentication Flow ui_sso.py get_redirect_response_from_openid session expiration6.3
- CVE-2026-12795BerriAI litellm SSO Debug Flow ui_sso.py json.dumps missing authentication7.3
- CVE-2026-12774BerriAI litellm MCP Server Connection Testing rest_endpoints.py _execute_with_mcp_client server-side request forgery6.3
- CVE-2026-12773BerriAI litellm MCP Proxy user_api_key_auth_mcp.py UserAPIKeyAuth improper authentication7.3
- CVE-2026-12772BerriAI litellm PROXY_ADMIN database API Key Generator login_utils.py authenticate_user session expiration6.3
- CVE-2026-12771BerriAI litellm M2M JWT user_api_key_auth.py improper authorization5.0
- CVE-2026-12770BerriAI litellm Admin Key key_management_endpoints.py improper authorization5.4
- CVE-2026-47102LiteLLM < 1.83.10 Privilege Escalation via User Update8.8
- CVE-2026-47101LiteLLM < 1.83.14 Privilege Escalation via API Key Generation8.8
- CVE-2026-42208LiteLLM: SQL injection in Proxy API key verificationKEV9.8
- CVE-2026-42203LiteLLM: Server-Side Template Injection in /prompts/test endpoint8.8
- CVE-2026-42271LiteLLM: Authenticated command execution via MCP stdio test endpointsKEV8.8