Live data from GitHub and PyPI, updated daily.
Data last fetched: 2026-05-16
10 active CVEs reported via OSV.dev
Arbitrary file deletion in litellm
LiteLLM has Server-Side Template Injection vulnerability in /completions endpoint
LiteLLM Vulnerable to Remote Code Execution (RCE)
LiteLLM: Privilege escalation via unrestricted proxy configuration endpoint
Two LiteLLM versions published containing credential harvesting malware
LiteLLM: Password hash exposure and pass-the-hash authentication bypass
litellm passes untrusted data to `eval` function without sanitization
LiteLLM Has a Leakage of Langfuse API Keys
SQL injection in litellm
LiteLLM Vulnerable to Denial of Service (DoS) via Crafted HTTP Request
Other AI / ML projects in the Python ecosystem worth evaluating.
Get SLA-backed support, security patches, and direct access to senior engineers for LiteLLM — without relying on volunteer maintainers.
Talk to an Expert →