LiteLLM Security Update Advisory (CVE-2026-59822)

LiteLLM Security Update Advisory (CVE-2026-59822)

Overview A security update has been released to address a vulnerability in LiteLLM. This vulnerability is an authentication bypass issue (CVE-2026-59822) caused by an error in the OAuth2 passthrough fallback handling. Affected Products LiteLLM versions prior to 1.84.0. Resolved Vulnerabilities CVE-2026-59822. This is an authentication bypass vulnerability caused by an

LiteLLM Security Update Advisory (CVE-2026-42271)

LiteLLM Security Update Advisory (CVE-2026-42271)

An arbitrary command execution vulnerability (CVE-2026-42271) has been identified in LiteLLM. affected Versions of LiteLLM are 1.74.2 and above and 1.83.7 and below. the vulnerability is reportedly related to authenticated command execution via MCP stdio test endpoints. resolved versions are LiteLLM 1.83.7 and later. users of affected products should follow

LiteLLM Security Update Advisory (CVE-2026-42208)

LiteLLM Security Update Advisory (CVE-2026-42208)

CVE-2026-42208, a SQL injection (an attack that injects malicious commands into a database query) vulnerability, has been confirmed in LiteLLM. affected Versions are LiteLLM 1.81.16 and above and 1.83.7 and below. the vulnerability has been patched via a security patch, which requires an update to LiteLLM 1.83.7 or later. it