Active Exploitation of LiteLLM Vulnerability (CVE-2026-42271) Confirmed
ID: a2337983-de16-54fd-9adb-3ddbcf4de843
STIX ID: report--a2337983-de16-54fd-9adb-3ddbcf4de843
Feed Name: ThreatCluster
Threat Score
A critical command-injection vulnerability (CVE-2026-42271) in BerryAI's LiteLLM AI gateway enables unauthenticated remote code execution and is being actively exploited in the wild; CISA has added the CVE to its Known Exploited Vulnerabilities catalog and researchers report a CVSS of 10.0. Immediate patching, access restrictions, and detection for unusual command execution are recommended.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
