CVE-2026-12774: BerriAI litellm MCP Server Connection Testing rest_endpoints.py _execute_with_mcp_client server-side request forgery
A security vulnerability has been detected in BerriAI litellm up to 1.82.2. Affected by this vulnerability is the function executewithmcpclient of the file litellm/proxy/experimental/mcpserver/restendpoints.py of the component MCP Server Connection Testing. The manipulation leads to server-side request forgery. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-12774?
CVE-2026-12774 has a medium severity rating of 6.3.
What type of vulnerability is CVE-2026-12774?
CVE-2026-12774 is classified as a Server-Side Request Forgery (SSRF) vulnerability.
How do I fix CVE-2026-12774?
To fix CVE-2026-12774, update the BerriAI litellm software to version 1.82.3 or later.
What component is affected by CVE-2026-12774?
CVE-2026-12774 affects the MCP Server Connection Testing component in the litellm library.
When was CVE-2026-12774 published?
CVE-2026-12774 was published on June 21, 2026.