Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4g5m-c9r5-49xf

Опубликовано: 22 июл. 2026
Источник: github
Github: Прошло ревью
CVSS4: 2.1

Описание

LiteLLM: Local file read via request-supplied OIDC file references

Impact

LiteLLM's /health/test_connection endpoint resolved request-supplied environment and OIDC file references in litellm_params. A proxy administrator, or another privileged caller with permission to test model connections, could cause LiteLLM to read files from the local filesystem via an oidc/file/ reference.

Because exploitation requires privileged proxy access, this is treated as a defense-in-depth issue rather than a cross-tenant privilege bypass.

Patches

The issue is fixed in 1.83.10-stable.

LiteLLM recommend upgrading to 1.83.10-stable or later.

Workarounds

Restrict /health/test_connection access to trusted administrators only.

Пакеты

Наименование

litellm

pip
Затронутые версииВерсия исправления

< 1.83.10

1.83.10

EPSS

Процентиль: 17%
0.00258
Низкий

2.1 Low

CVSS4

Дефекты

CWE-73

Связанные уязвимости

CVSS3: 4.9
redhat
26 дней назад

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.83.10-stable, LiteLLM's /health/test_connection endpoint resolved request-supplied environment and OIDC file references in litellm_params, allowing a proxy administrator or another privileged caller with permission to test model connections to read files from the local filesystem via an oidc/file/ reference. This issue is fixed in version 1.83.10-stable.

CVSS3: 4.9
nvd
26 дней назад

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.83.10-stable, LiteLLM's /health/test_connection endpoint resolved request-supplied environment and OIDC file references in litellm_params, allowing a proxy administrator or another privileged caller with permission to test model connections to read files from the local filesystem via an oidc/file/ reference. This issue is fixed in version 1.83.10-stable.

EPSS

Процентиль: 17%
0.00258
Низкий

2.1 Low

CVSS4

Дефекты

CWE-73