AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2026-84377.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSMEDIUM / 0No severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSGitHub reviewed advisoryModified Sep 30, 2026

Disclosure summary

### Impact Any authenticated LiteLLM proxy user could redirect an outbound provider call to a destination they control and cause the proxy to send its own configured provider credentials to that destination. The proxy's request-body validation was a denylist that did not cover every sensitive parameter and did not inspect parameters nested inside other request fields, so a caller could supply a routing or credential value that the proxy applied without clearing the operator's stored key. Any authenticated user could therefore exfiltrate the operator's upstream provider credentials and other configured secrets, and perform Server-Side Request Forgery against internal services reachable from the proxy. ### Patches Fixed in 1.96.2, 1.95.1, 1.94.3, 1.93.2, 1.92.2, 1.91.5, 1.90.7, 1.89.7, and 1.88.6. ### Workarounds Set `general_settings.allow_client_side_credentials` to `false` so callers cannot override connection parameters, restrict proxy keys to trusted callers, and block the affected parameters (`api_base`, `base_url`, `model_list`, `fallbacks`, provider credential fields) at a reverse proxy or API gateway.

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

GitHub Reviewed Security Advisories · GHSA-3cv6-jpf6-8222

Open original source · Updated Sep 30, 2026

LiteLLM: Authenticated SSRF and provider-credential exfiltration via unvalidated request-body routing parameters

Source severity: MEDIUM / 0

EcosystemPackageAffected rangeFirst patched
piplitellm< 1.88.61.88.6
piplitellm>= 1.89.0, < 1.89.71.89.7
piplitellm>= 1.90.0, < 1.90.71.90.7
piplitellm>= 1.91.0, < 1.91.51.91.5
piplitellm>= 1.92.0, < 1.92.21.92.2
piplitellm>= 1.93.0, < 1.93.21.93.2
piplitellm>= 1.94.0, < 1.94.31.94.3
piplitellm>= 1.95.0, < 1.95.11.95.1
piplitellm>= 1.96.0, < 1.96.21.96.2

Original records & references

PUBLISHED 2026-09-30T17:11:25-04:00
MODIFIED 2026-09-30T17:11:28-04:00
INGESTED 2026-10-06T11:43:09-04:00