vciy

CVEs we hold for Berriai

Records whose assigning authority named Berriai as the affected vendor. Newest identifiers first, capped at 200.

CVE-2026-84377LiteLLM: Authenticated SSRF and provider-credential exfiltration via unvalidated request-body routing parametersBerriAI litellm
CVE-2026-59823LiteLLM: Server-side request forgery via the `user_config` request parameter in LiteLLM ProxyBerriAI litellm
CVE-2026-59822LiteLLM: MCP Authentication Bypass via OAuth2 Passthrough FallbackBerriAI litellm
CVE-2026-59821LiteLLM: Custom Code Guardrails production endpoints bypass code safety checksBerriAI litellm
CVE-2026-59820LiteLLM: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')BerriAI litellm
CVE-2026-59819LiteLLM: Local file read via request-supplied OIDC file referencesBerriAI litellm
CVE-2026-49468LiteLLM: Authentication Bypass via Host Header InjectionBerriAI litellm
CVE-2026-47102LiteLLM < 1.83.10 Privilege Escalation via User UpdateBerriAI litellm
CVE-2026-47101LiteLLM < 1.83.14 Privilege Escalation via API Key GenerationBerriAI litellm
CVE-2026-42271LiteLLM: Authenticated command execution via MCP stdio test endpointsBerriAI litellm
CVE-2026-42208LiteLLM: SQL injection in Proxy API key verificationBerriAI litellm
CVE-2026-42203LiteLLM: Server-Side Template Injection in /prompts/test endpointBerriAI litellm
CVE-2026-40217no title heldBerriAI LiteLLM
CVE-2026-35030LiteLLM has an authentication bypass via OIDC userinfo cache key collisionBerriAI litellm
CVE-2026-35029LiteLLM affected by privilege escalation via unrestricted proxy configuration endpointBerriAI litellm
CVE-2026-12799BerriAI litellm Incomplete Fix CVE-2025-0628 internal_user_endpoints.py ui_view_users improper authorizationBerriAI litellm
CVE-2026-12798BerriAI litellm MCP OpenAPI Spec Loader openapi_to_mcp_generator.py load_openapi_spec_async server-side request forgeryBerriAI litellm
CVE-2026-12797BerriAI litellm Completions banned_keywords.py async_pre_call_hook authorizationBerriAI litellm
CVE-2026-12796BerriAI litellm SSO Authentication Flow ui_sso.py get_redirect_response_from_openid session expirationBerriAI litellm
CVE-2026-12795BerriAI litellm SSO Debug Flow ui_sso.py json.dumps missing authenticationBerriAI litellm
CVE-2026-12774BerriAI litellm MCP Server Connection Testing rest_endpoints.py _execute_with_mcp_client server-side request forgeryBerriAI litellm
CVE-2026-12773BerriAI litellm MCP Proxy user_api_key_auth_mcp.py UserAPIKeyAuth improper authenticationBerriAI litellm
CVE-2026-12772BerriAI litellm PROXY_ADMIN database API Key Generator login_utils.py authenticate_user session expirationBerriAI litellm
CVE-2026-12771BerriAI litellm M2M JWT user_api_key_auth.py improper authorizationBerriAI litellm
CVE-2026-12770BerriAI litellm Admin Key key_management_endpoints.py improper authorizationBerriAI litellm
CVE-2025-0628Improper Authorization in BerriAI/litellmberriai/litellm
CVE-2025-0330Exposure of Sensitive Information in berriai/litellmberriai/litellm
CVE-2024-9606Improper Output Neutralization for Logs in berriai/litellmberriai/litellm
CVE-2024-8984Denial of Service (DoS) in berriai/litellmberriai/litellm
CVE-2024-6825Remote Code Execution in BerriAI/litellmberriai/litellm
CVE-2024-6587SSRF in berriai/litellmberriai/litellm
CVE-2024-5751Remote Code Execution in BerriAI/litellmberriai/litellm
CVE-2024-5710Improper Access Control in Team Management in berriai/litellmberriai/litellm
CVE-2024-5225SQL Injection in berriai/litellmberriai/litellm
CVE-2024-4890Blind SQL Injection in berriai/litellmberriai/litellm
CVE-2024-4889Code Injection in berriai/litellmberriai/litellm
CVE-2024-4888Arbitrary File Deletion in BerriAI/litellmberriai/litellm
CVE-2024-4264Remote Code Execution in berriai/litellmberriai/litellm
CVE-2024-2952Server-Side Template Injection in BerriAI/litellmberriai/litellm
CVE-2024-10188Denial of Service in BerriAI/litellmberriai/litellm

40 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.