Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3529 articles · 209755 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2026-59819PATCHED
BerriAI · litellm

LiteLLM: Local file read via request-supplied OIDC file references

Description

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.83.10-stable, LiteLLM's /health/test_connection endpoint resolved request-supplied environment and OIDC file references in litellm_params, allowing a proxy administrator or another privileged caller with permission to test model connections to read files from the local filesystem via an oidc/file/ reference. This issue is fixed in version 1.83.10-stable.

Affected Products

VendorProductVersions
BerriAIlitellmpip/litellm: < 1.83.10

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourcelitellmcert_advisory90%

References

  • https://github.com/BerriAI/litellm/security/advisories/GHSA-4g5m-c9r5-49xf(x_refsource_CONFIRM)
  • https://github.com/BerriAI/litellm/pull/25592(x_refsource_MISC)
  • https://github.com/BerriAI/litellm/releases/tag/v1.83.10-stable(x_refsource_MISC)

Related News (2 articles)

Tier B
BSI Advisories57d ago
[NEU] [hoch] LiteLLM: Mehrere Schwachstellen
→ No new info (linked only)
Tier C
VulDB57d ago
CVE-2026-59819 | BerriAI litellm up to 1.83.10 OIDC File /health/test_connection oidc permission
→ No new info (linked only)

Discussion (0)

Loading…

CISA KEV❌ No
Actively exploited❌ No
Patch available
litellm@1.83.10
CWECWE-73
PublishedJul 8, 2026
Last enriched57d agov2
Trending Score0
Source articles2
Independent2
Info Completeness8/14
Missing: cvss, epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-59822EXPKEV
LiteLLM: MCP Authentication Bypass via OAuth2 Passthrough Fallback
Trending: 127
MEDIUMCVE-2026-84377EXP
LiteLLM: Authenticated SSRF and provider-credential exfiltration via unvalidated request-body routing parameters
Trending: 46
LOWCVE-2026-59821EXPKEV
LiteLLM: Custom Code Guardrails production endpoints bypass code safety checks
NONECVE-2026-12799EXP
BerriAI litellm Incomplete Fix CVE-2025-0628 internal_user_endpoints.py ui_view_users improper authorization
NONECVE-2026-12796
BerriAI litellm SSO Authentication Flow ui_sso.py get_redirect_response_from_openid session expiration

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Vulnerability Timeline

CVE Published
Jul 8, 2026
Discovered by ZDM
Jul 8, 2026
Updated: vendor, product, affectedVersions, patchAvailable
Jul 8, 2026
Patch Available
Jul 9, 2026

Version History

v2
Last enriched 57d ago
v2Tier C57d ago

Updated vendor to BerriAI, product to litellm, set severity to HIGH, and noted that the vulnerability is actively exploited.

vendorproductaffectedVersionspatchAvailable
via VulDB
v157d ago

Initial creation