VYPR
High severity7.2NVD Advisory· Published Jul 8, 2026· Updated Jul 13, 2026

CVE-2026-59821

CVE-2026-59821

Description

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.82.0-stable, LiteLLM's Custom Code Guardrails production create and update paths did not apply the same sandboxing and validation used by the test endpoint, allowing a privileged user with access to create or update guardrails to submit custom Python code that executed in the LiteLLM proxy environment and could expose secrets available to the process. This issue is fixed in version 1.82.0-stable.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
litellmPyPI
< 1.82.01.82.0

Affected products

3
  • Berriai/Litellm3 versions
    cpe:2.3:a:litellm:litellm:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:litellm:litellm:*:*:*:*:*:*:*:*range: <1.82.0
    • cpe:2.3:a:litellm:litellm:1.82.0:nightly:*:*:*:*:*:*
    • (no CPE)range: <1.82.0-stable

Patches

Vulnerability mechanics

References

5

News mentions

1