Critical SQL Injection Vulnerability in LiteLLM Exploited in-the-Wild (Campaign)
The vulnerability exists in LiteLLM’s authentication flow, where the Authorization: Bearer header is directly concatenated into a SQL query without proper parameterization. This flaw allows attackers to inject arbitrary SQL statements prior to authentication, enabling direct a...
LiteLLM US