VDB
CVE-2026-42271
CVE-2026-42271
PUBLISHED
KEV
LiteLLM ist ein Gateway, das eine einheitliche Schnittstelle für verschiedene Large Language Models (LLMs) bietet.
EPSS 83.54% · 99.7th percentile
Risk Scores
EPSS Score
83.54%
99.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Open Source | Open Source LiteLLM >=1.81.16 | |
| Red Hat | Red Hat Enterprise Linux | |
| Open Source | Open Source LiteLLM <1.83.7 |
Timeline
- Sep 27, 2022 CrowdSec Sighting
- Dec 17, 2022 CrowdSec Sighting
- Mar 9, 2023 CrowdSec Sighting
- Apr 5, 2023 CrowdSec Sighting
- Aug 10, 2023 CrowdSec Sighting
- Jan 5, 2025 CrowdSec Sighting
- Jun 28, 2025 CrowdSec Sighting
- Sep 23, 2025 CrowdSec Sighting
- Apr 9, 2026 CrowdSec Sighting
- Apr 25, 2026 CVE Published
- May 6, 2026 Security Advisory
- May 17, 2026 CrowdSec Sighting
References
- https://www.cisa.gov/news-events/alerts/2026/06/08/cisa-adds-two-known-exploited-vulnerabilities-catalog advisory
- https://access.redhat.com/errata/RHSA-2026:27784 advisory
- https://access.redhat.com/errata/RHSA-2026:30056 advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-1288.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1288 advisory
- https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc advisory
- https://webflow.sysdig.com/blog/cve-2026-42208-targeted-sql-injection-against-litellms-authentication-path-discovered-36-hours-following-vulnerability-disclosure advisory
- https://github.com/BerriAI/litellm/security/advisories/GHSA-v4p8-mg3p-g94g advisory