VDB
KO
CRITICAL

GHSA-5mg7-485q-xm76

Two LiteLLM versions published containing credential harvesting malware

Details

After an API Token exposure from an exploited trivy dependency, two new releases of `litellm` were uploaded to PyPI containing automatically activated malware, harvesting sensitive credentials and files, and exfiltrating to a remote API.

Anyone who has installed and run the project should assume any credentials available to litellm environment may have been exposed, and revoke/rotate thema ccordingly.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / litellm
Introduced in: 1.82.7

No fixed version published yet for litellm (pip). Pin to a known-safe version or switch to an alternative.

References