LiteLLM is an open-source AI gateway that connects applications to multiple model providers. Versions 1.82.7 and 1.82.8 were compromised in a supply-chain attack, with malicious code designed to steal credentials and exfiltrate them to an attacker-controlled domain.