CNNVD-202507-313 Information

CNNVD ID

CNNVD-202507-313

CVE-2025-45809

  • CNNVD Published: 2025-07-03

Description (Chinese)

BerriAI LiteLLM是BerriAI开源的一个调用大语言模型的Python库。 BerriAI LiteLLM v1.65.4版本存在安全漏洞,该漏洞源于/key/block端点存在SQL注入漏洞。

Description (English)

Berriai LiteLLM is a Python library that calls for a large-language model from the Berriai Open Source. There is a security gap in the Berriai LiteLM v1.65.4 version, which originates from the SQL injection gap at the /key/block endpoint.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

BerriAI

Published

2025-07-03

Last Modified

2026-02-24

References

https://github.com/shadia0/Patienc/blob/main/litellm/SQL_injection.md

Patch

https://github.com/BerriAI/litellm/releases

Share on: