LiteLLM: Open-Source AI Gateway
LiteLLM is an open-source AI gateway used to connect applications with multiple model providers. Versions 1.82.7 and 1.82.8 were compromised in a…
LiteLLM is an open-source AI gateway used to connect applications with multiple model providers. Versions 1.82.7 and 1.82.8 were compromised in a…
Mercor, an AI talent platform, reported that it was affected by malicious LiteLLM versions and contained unauthorized activity. The company is among…
Two malicious LiteLLM releases on PyPI, versions 1.82.7 and 1.82.8, were live for about 40 minutes on March 24, 2026, carrying credential-stealing…
CVE-2026-33634 is a critical vulnerability in the Trivy scanner ecosystem, exploited in a supply-chain attack that also affected LiteLLM. Added to CISA's…
Cybersecurity researchers at Zenity Labs have disclosed a critical vulnerability in OpenAI's ChatGPT Workspace Agents, codenamed AgentForger, that could allow a single…
A critical vulnerability in LiteLLM that is being actively exploited by attackers to hijack AI infrastructure and conduct attacks against third parties.
A chain of three vulnerabilities in LiteLLM, a widely deployed open-source AI gateway, allows low-privilege users to escalate to full admin and…
BerriAI is the company behind the LiteLLM project. It was involved in responding to the malicious releases, with its incident report pointing…
X41 D-Sec independently found a sandbox escape path in LiteLLM's Custom Code Guardrail playground endpoint, which bypassed a regex deny-list through runtime…
LiteLLM is an open-source AI gateway that connects applications to multiple model providers. Versions 1.82.7 and 1.82.8 were compromised in a supply-chain…