← volver
CVE-2026-59822highexplotación observadaCWE-287CWE-306

LiteLLM: MCP Authentication Bypass via OAuth2 Passthrough Fallback

43Vexday Risk Score

Prioriza la corrección. Ella explotación observada por VulnCheck.

ssvc Actcvss 8.8epss 0.3%
de la publicación al arma
Publicada en NVD8 jul
VulnCheck+18d
probabilidad de explotación
0.3%top 77% de las CVE
explotación observada
VulnCheck
LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.84.0, LiteLLM's MCP Streamable HTTP endpoint allowed an unauthenticated attacker to use a fabricated Authorization header to trigger an OAuth2 passthrough fallback path that replaced failed LiteLLM key validation with an empty UserAPIKeyAuth() object, allowing requests to reach MCP tooling without a valid LiteLLM key. This issue is fixed in version 1.84.0.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N
Productos afectados
BerriAI · litellm