VYPR

apk package

chainguard/litellm

pkg:apk/chainguard/litellm

Vulnerabilities (62)

  • CVE-2026-23490HigJan 16, 2026
    affected < 1.80.15.0-r1fixed 1.80.15.0-r1

    pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.

  • CVE-2025-14546MedDec 19, 2025
    affected < 1.83.10.0-r0fixed 1.83.10.0-r0

    Versions of the package fastapi-sso before 0.19.0 are vulnerable to Cross-site Request Forgery (CSRF) due to the improper validation of the OAuth state parameter during the authentication callback. While the get_login_url method allows for state generation, it does not persist th

Page 4 of 4