Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Yaaras

#40855of 56,330
7.2Total CVSS
Vulnerabilities · 1
PT-2026-56544
7.2
2026-07-08
Litellm · Litellm · CVE-2026-59821
**Name of the Vulnerable Software and Affected Versions** LiteLLM versions prior to 1.82.0-stable **Description** LiteLLM is a proxy server that acts as an AI Gateway for calling LLM APIs. A flaw exists in the production create and update paths of the Custom Code Guardrails, which failed to apply the same sandboxing and validation used by the test endpoint. This allows a privileged user with permissions to create or update guardrails to submit custom Python code that executes within the LiteLLM proxy environment, potentially exposing secrets available to the process. This issue has been exploited in real-world incidents. **Recommendations** Update to version 1.82.0-stable.