News

CVE-2026-42208: LiteLLM bug exploited 36 hours after its disclosure

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2026-04-29 20:09:58 UTC

Attackers quickly exploited a critical LiteLLM flaw (CVE-2026-42208) to access and modify sensitive database data via SQL injection. Attackers rapidly exploited a critical vulnerability in LiteLLM Python package, tracked as CVE-2026-42208, just days after it …

CVE-2026-42208: LiteLLM bug exploited 36 hours after its disclosure Attackers rapidly exploited a critical vulnerability in LiteLLM Python package, tracked as CVE-2026-42208, just days after it beca… [+2992 chars]