https://seclists.org/oss-sec/2026/q1/383: backdoor in litellm version 1.82.7
Published Mar 25, 2026
·Updated
Affected Software
1 affected component
pypi/litellm>=1.82.7<=1.82.8
Frequently Asked Questions
1
What is the severity of GHSA-5mg7-485q-xm76?
The severity of GHSA-5mg7-485q-xm76 is considered critical due to the potential for credential theft and the installation of a backdoor.
2
How do I fix GHSA-5mg7-485q-xm76?
To fix GHSA-5mg7-485q-xm76, you should immediately upgrade to a non-compromised version of the litellm package.
3
What are the consequences of using affected versions of litellm?
Using affected versions of litellm can lead to credential theft and unauthorized access to systems via the installed backdoor.
4
How can I identify if I am using a vulnerable version of litellm?
You can identify a vulnerable version of litellm by checking the package version against the version history available in the Python Package Index.
5
Are there reports of exploits related to GHSA-5mg7-485q-xm76?
Yes, there have been reports of exploits related to GHSA-5mg7-485q-xm76, highlighting the backdoor capabilities for credential theft.