VDB
CVE-2024-6587
CVE-2024-6587
PUBLISHED
CVSS 7.5 HIGH
LiteLLM Server-Side Request Forgery (SSRF) vulnerability
EPSS 88.63% · 99.5th percentile
Risk Scores
CVSS 3.0
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
88.63%
99.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| litellm | litellm | 1.38.10, 1.38.10 |
| PyPI | litellm | 0, 0 |
| berriai | litellm | 0, 0 |
| berriai | berriai/litellm | *, * |
Timeline
- Jan 6, 2024 CrowdSec Sighting
- Mar 27, 2024 CrowdSec Sighting
- Apr 12, 2024 CrowdSec Sighting
- Apr 19, 2024 CrowdSec Sighting
- May 30, 2024 CrowdSec Sighting
- May 30, 2024 CrowdSec Sighting
- Jun 14, 2024 CrowdSec Sighting
- Jun 17, 2024 CrowdSec Sighting
- Jul 18, 2024 CrowdSec Sighting
- Jul 22, 2024 Nuclei Template
- Jul 22, 2024 Fix Commit
- Aug 1, 2024 CrowdSec Sighting