logo

Active Exploitation of LiteLLM Vulnerability (CVE-2026-42271) Confirmed

ID: a2337983-de16-54fd-9adb-3ddbcf4de843

STIX ID: report--a2337983-de16-54fd-9adb-3ddbcf4de843

Feed Name: ThreatCluster

Threat Score
95/100

Date Published: 2026-06-09

Date Updated: 2026-06-09

...
...

A critical command-injection vulnerability (CVE-2026-42271) in BerryAI's LiteLLM AI gateway enables unauthenticated remote code execution and is being actively exploited in the wild; CISA has added the CVE to its Known Exploited Vulnerabilities catalog and researchers report a CVSS of 10.0. Immediate patching, access restrictions, and detection for unusual command execution are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.