CVE-2024-10188 Information
Mar 21, 2025
cve
Description
A vulnerability in BerriAI/litellm as of commit 26c03c9 allows unauthenticated users to cause a Denial of Service (DoS) by exploiting the use of ast.literal_eval to parse user input. This function is not safe and is prone to DoS attacks which can crash the litellm Python server.
Reference
https://github.com/berriai/litellm/commit/21156ff5d0d84a7dd93f951ca033275c77e4f73c https://huntr.com/bounties/96a32812-213c-4819-ba4e-36143d35e95b
Share on: