What is CVE-2026-42208?
BerriAI LiteLLM contains a SQL injection vulnerability that allows an attacker to read data from the proxy's database and potentially modify it, leading to unauthorized access to the proxy and the credentials it manages.
CISA Known Exploited Vulnerability
BerriAI LiteLLM SQL Injection Vulnerability
Affected product
BerriAI LiteLLM
Remediation Steps
- Identify all systems running the affected software version
- Test patches in isolated lab environment before production deployment
- Deploy patches to production systems during change windows
- Verify patch installation across all affected systems
- Monitor system logs for exploitation attempts
References
Coverage on defend.network
🤖 This CVE page is generated by defend.network from NVD, CISA KEV, EPSS, and our verified daily briefings. Severity and exploitation data come from official sources; always verify remediation steps against the official vendor advisory before acting in production.