CVE-2026-42271CISA KEV: Actively Exploited

BerriAI LiteLLM Command Injection Vulnerability

Published Jun 8, 2026·Updated Jun 8, 2026

Description

BerriAI LiteLLM contains a command injection vulnerability that could allow any authenticated user, including holders of low-privilege internal-user keys, to run arbitrary commands on the host.

Public Exploits & PoCs2 found

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free