logo

LiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway Servers

ID: b3b69feb-1b89-5a4f-bd7b-aec90dd5d34e

STIX ID: report--b3b69feb-1b89-5a4f-bd7b-aec90dd5d34e

Feed Name: CosmicBytez Labs

Threat Score
80/100

Date Published: 2026-06-15

Date Updated: 2026-06-16

...
...

Obsidian Security disclosed a critical chained vulnerability in LiteLLM allowing low‑privilege users to promote themselves to admin, exfiltrate stored API keys and model-provider secrets, and inject configurations that result in remote code execution on the gateway server; organizations running self‑hosted LiteLLM should patch immediately, audit accounts, rotate keys, restrict admin access, and review logs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.