LiteLLM
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 47 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 10, 2024 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →LiteLLM: Local file read via request-supplied OIDC file references
LiteLLM: MCP Authentication Bypass via OAuth2 Passthrough Fallback
LiteLLM: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
LiteLLM: Custom Code Guardrails production endpoints bypass code safety checks
PSA: Critical LiteLLM AI Gateway RCE (CVE-2026-42271) added to CISA KEV. A technical breakdown of the exploit chain.
BerriAI litellm Incomplete Fix CVE-2025-0628 internal_user_endpoints.py ui_view_users improper authorization
BerriAI litellm MCP OpenAPI Spec Loader openapi_to_mcp_generator.py load_openapi_spec_async server-side request forgery
BerriAI litellm Completions banned_keywords.py async_pre_call_hook authorization
BerriAI litellm SSO Authentication Flow ui_sso.py get_redirect_response_from_openid session expiration
Monitor LiteLLM in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.