LiteLLMGHSA-fjcf-3j3r-78rp
LiteLLM Has an Improper Authorization Vulnerability
High8.1CVE-2025-0628 · Published Mar 20, 2025 · updated Sep 10, 2026
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| litellm PyPI | < 1.61.15 | 1.61.15 |
Details and references
An improper authorization vulnerability exists in the main-latest version of BerriAI/litellm. When a user with the role 'internal_user_viewer' logs into the application, they are provided with an overly privileged API key. This key can be used to access all the admin functionality of the application, including endpoints such as '/users/list' and '/users/get_users'. This vulnerability allows for privilege escalation within the application, enabling any account to become a PROXY ADMIN.
More LiteLLM advisories
All LiteLLM| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Mar 202025 | LiteLLM Vulnerable to Denial of Service (DoS) CVE-2024-10188High7.5fixed in 1.53.1.dev1 | High7.5 | 1.53.1.dev1 |
| Mar 202025 | LiteLLM Vulnerable to Remote Code Execution (RCE) CVE-2024-6825High8.8no fix yet | High8.8 | No fix yet |
| Mar 202025 | LiteLLM Vulnerable to Denial of Service (DoS) via Crafted HTTP Request CVE-2024-8984High7.5fixed in 1.56.2 | High7.5 | 1.56.2 |
| Mar 202025 | LiteLLM Reveals Portion of API Key via a Logging File CVE-2024-9606High7.5fixed in 1.44.12 | High7.5 | 1.44.12 |
| Mar 202025 | LiteLLM Has a Leakage of Langfuse API Keys CVE-2025-0330High7.5no fix yet | High7.5 | No fix yet |
| Sep 132024 | LiteLLM Server-Side Request Forgery (SSRF) vulnerability CVE-2024-6587High7.5fixed in 1.44.8 | High7.5 | 1.44.8 |