CVE-2026-42208
BerriAI litellm, Lightspeed Core, Red Hat Ansible Automation Platform 2
LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.81.16 to before version 1.83.7, a database query used during proxy API key checks mixed the caller-supplied key value into the query text instead of passing it as a separate parameter. An unauthenticated attacker could send a specially crafted Authorization header to any LLM API route (for example POST /chat/completions) and reach this query through the proxy's error-handling path. An attacker could read data from the proxy's database and may be able to modify it, leading to unauthorised acc...
- CVSS
- 9.3
- EPSS
- 89.4% 99.8% percentile
- CISA KEV
- Listed
- Published
- 2026.05.08