berriai
Safeguard articles tagged "berriai" — guides, analysis, and best practices for software supply chain and application security.
4 articles
CVE-2026-42208: BerriAI LiteLLM SQL Injection Vulnerability
CVE-2026-42208 affects BerriAI LiteLLM and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-05-08.
CVE-2026-42271: BerriAI LiteLLM Command Injection Vulnerability
CVE-2026-42271 affects BerriAI LiteLLM and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-06-08.
CVE-2026-59822: BerriAI LiteLLM Improper Authentication Vulnerability
CVE-2026-59822 affects BerriAI LiteLLM and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-09-02.
LiteLLM's AI Gateway Shipped a Critical SQL Injection and a Command Injection in the Same Patch Cycle
An unauthenticated SQL injection in API key checks and an authenticated command injection via MCP preview endpoints both hit BerriAI's LiteLLM proxy, fixed together in v1.83.7.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.