Логотип exploitDog
bind:CVE-2025-0330
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-0330

Количество 2

Количество 2

nvd логотип

CVE-2025-0330

11 месяцев назад

In berriai/litellm version v1.52.1, an issue in proxy_server.py causes the leakage of Langfuse API keys when an error occurs while parsing team settings. This vulnerability exposes sensitive information, including langfuse_secret and langfuse_public_key, which can provide full access to the Langfuse project storing all requests.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-879v-fggm-vxw2

11 месяцев назад

LiteLLM Has a Leakage of Langfuse API Keys

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-0330

In berriai/litellm version v1.52.1, an issue in proxy_server.py causes the leakage of Langfuse API keys when an error occurs while parsing team settings. This vulnerability exposes sensitive information, including langfuse_secret and langfuse_public_key, which can provide full access to the Langfuse project storing all requests.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-879v-fggm-vxw2

LiteLLM Has a Leakage of Langfuse API Keys

CVSS3: 7.5
0%
Низкий
11 месяцев назад

Уязвимостей на страницу