LiteLLM is an open-source AI gateway used to connect applications with multiple model providers. Versions 1.82.7 and 1.82.8 were compromised in a supply-chain attack, containing credential-stealing code. The project advised users to rotate secrets and treat installs during the audit window as suspect.