LiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway Servers
thehackernews.com Jun 16, 2026

LiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway Servers

AI-summarised brief · reviewed before publication

A critical vulnerability chain has been discovered in LiteLLM, a widely deployed open-source AI gateway. The chain, rated CVSS 9.9, allows low-privilege users to climb to full admin and run code on the server, exposing sensitive information such as provider keys, credentials, and prompts. The vulnerability affects LiteLLM v1.83.13 and earlier, and a fix is available in v1.83.14-stable, released on May 2. Users are advised to upgrade to the latest version to close the three-CVE chain.

💡 Why It Matters

  • · A server takeover through this vulnerability chain would grant an attacker access to sensitive information, compromising the security of multiple AI model providers.
  • · This exposure could lead to significant data breaches and reputational damage for organizations relying on LiteLLM as a gateway.