Close Menu
    What's Hot

    Transfer rumors, news: Man United, City monitor Cucurella

    ICC Women’s T20 World Cup: Charlie Dean believes England can beat anyone, but how are team handling pressure ahead of tournament? | Cricket News

    Ian Darke’s World Cup preview: Favorites, surprises to watch, Brazil to win?

    Facebook X (Twitter) Instagram
    Trending
    • Transfer rumors, news: Man United, City monitor Cucurella
    • ICC Women’s T20 World Cup: Charlie Dean believes England can beat anyone, but how are team handling pressure ahead of tournament? | Cricket News
    • Ian Darke’s World Cup preview: Favorites, surprises to watch, Brazil to win?
    • Exclusive: Get Bruvi’s Pod Coffee Maker for Nearly Half Off
    • 5 Great North American Biking Cities
    • 5 Great North American Biking Cities
    • Burnout isn’t about working too much
    • Opinion | If Winning Is Everything, Is Anything Off Limits?
    interluknewsinterluknews
    • Home
    • Business
      • Corporate News
      • Industry Insights
      • Startups & Entrepreneurship
      • Technology & Innovation
    • Economy
      • Economic Policy
      • Financial Analysis
      • Inflation & Interest Rates
      • Trade & Markets
    • Global
      • Conflicts & Security
      • Diplomacy
      • Global Trends
      • International Affairs
    • Lifestyle
      • Fashion
      • Food & Dining
      • Personal Development
      • Travel
    • Opinion
      • Columns
      • Editorials
      • Expert Opinions
      • Reader Voices
    • More
      • Politics
        • Elections
        • Government & Policy
        • International Relations
        • Political Analysis
      • Sports
        • Cricket
        • Football / Soccer
        • International Sports
        • Local Sports
      • Technology
        • Artificial Intelligence
        • Cybersecurity
        • Gadgets & Reviews
        • Tech News
      • South Africa News
    Facebook X (Twitter) Instagram
    interluknewsinterluknews
    Cybersecurity

    LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE

    adminBy adminJune 9, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
    LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Ravie LakshmananJun 09, 2026Vulnerability / Artificial Intelligence

    LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity flaw impacting BerriAI LiteLLM to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.

    The vulnerability, tracked as CVE-2026-42271 (CVSS score: 8.7), is a command injection vulnerability that could allow any authenticated user to run arbitrary commands on the host.

    It affects the following version of the LiteLLM Python package –

    “Two endpoints used to preview an MCP server before saving it – POST /mcp-rest/test/connection and POST /mcp-rest/test/tools/list – accepted a full server configuration in the request body, including the command, args, and env fields used by the stdio transport,” according to a description of the flaw shared by BerriAI.

    Cybersecurity

    “When called with a stdio configuration, the endpoints attempted to connect, which spawned the supplied command as a subprocess on the proxy host with the privileges of the proxy process.”

    The maintainers of the open-source AI gateway and Python SDK said the endpoints were secured only by means of a valid proxy API key, as a result of which any authenticated user, including privileged internal-user keys, could execute arbitrary commands on a susceptible system.

    As part of the patches released in version 1.83.7, both the test endpoints now require the PROXY_ADMIN role, making it consistent with the save endpoint.

    LiteLLM Unauthenticated Remote Code Execution via Starlette Host Header Validation Bypass

    Last week, Horizon3.ai said it chained CVE-2026-42271 with CVE-2026-48710 (CVSS score: 6.5), a “BadHost” host header validation bypass vulnerability affecting Starlette, a lightweight Asynchronous Server Gateway Interface (ASGI) framework, to completely sidestep authentication and achieve remote code execution against vulnerable LiteLLM deployments.

    “CVE-2026-48710 can be used to bypass the authentication mechanism entirely in LiteLLM deployments whose dependency tree includes Starlette versions ≤ 1.0.0,” Horizon3.ai said. “This transforms the vulnerability into unauthenticated remote code execution with no credentials required.”

    Successful weaponization of the exploit chain could allow attackers to run arbitrary commands on the LiteLLM host, access model provider credentials, siphon API keys and secrets stored by the proxy, move laterally into connected AI infrastructure, and even compromise downstream systems integrated with the gateway.

    Per Horizon3.ai, the chained vulnerability has a combined CVSS score of 10.0, making it critical in nature.

    Cybersecurity

    There is currently no information on how the vulnerability is being exploited, the identity of the threat actor(s) behind the efforts, who are targeted, how widespread these attacks are, or if the activity has successfully compromised any instances. It’s also unclear if the attacks observed in the wild are leveraging the exploit chain.

    Users are advised to update LiteLLM to version 1.83.7 or later and Starlette to version 1.0.1 or later. If immediate patching is not an option, the following mitigations are recommended –

    • Block POST /mcp-rest/test/connection and POST /mcp-rest/test/tools/list at the reverse proxy or API gateway.
    • Restrict network access to trusted segments.
    • Rotate credentials stored by the proxy.
    • Review logs for unusual Host header activity and subprocess execution events.

    The development comes a little over a month after a critical SQL injection flaw in LiteLLM (CVE-2026-42208, CVSS score: 9.3) came under active exploitation within 36 hours of the bug becoming public knowledge.

    Chains CVE202642271 Exploited flaw LiteLLM RCE Unauthenticated wild
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Previous ArticleThe end of the ‘good enough’ worker
    Next Article Where was tvOS 27 at WWDC?
    admin
    • Website

    Related Posts

    The Hardest Fork

    June 9, 2026

    One-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now Public

    June 8, 2026

    Instagram Account Hacks, Android Zero-Day, GitHub Worm and More

    June 8, 2026
    Leave A Reply Cancel Reply

    Demo
    Latest Posts

    Transfer rumors, news: Man United, City monitor Cucurella

    ICC Women’s T20 World Cup: Charlie Dean believes England can beat anyone, but how are team handling pressure ahead of tournament? | Cricket News

    Ian Darke’s World Cup preview: Favorites, surprises to watch, Brazil to win?

    Exclusive: Get Bruvi’s Pod Coffee Maker for Nearly Half Off

    Latest Posts

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    Advertisement
    Demo

    We are a digital news platform delivering timely, accurate, and insightful coverage of politics, global affairs, business, economy, sports, and more. Our mission is to keep readers informed with reliable news, clear analysis, and stories that truly matter.
    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.

    Powered by
    ...
    ►
    Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
    None
    ►
    Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
    None
    ►
    Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
    None
    ►
    Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
    None
    ►
    Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
    None
    Powered by