← nejvýznamnější zprávy · všechny zprávy

Critical SQL Injection Vulnerability in LiteLLM Exploited in-the-Wild (Campaign)

The vulnerability exists in LiteLLM’s authentication flow, where the Authorization: Bearer header is directly concatenated into a SQL query without proper parameterization. This flaw allows attackers to inject arbitrary SQL statements prior to authentication, enabling direct a...

Číst originál na Wiz Research →

CZ · EN/orig

LiteLLM US