{"api_version":"v1","generated_at":"2026-10-08T11:00:00+00:00","product":{"cve_count":26,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-berriai-litellm-ce0c87ef0fa1","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"LiteLLM","next_cursor":null,"observations":[{"affected":"litellm: \u2264 1.102.1, \u2264 f4308bc124eebc783dfc51790ce8db27ed21ae00","affected_versions_present":true,"cve_id":"CVE-2026-93355","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-93355","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-01T15:21:59.696Z","patch_url":"https://www.suse.com/security/cve/CVE-2026-93355","primary_source":"","published":"2026-09-28T19:26:01.155Z"},{"affected":"litellm: < 1.101.0-rc.1","affected_versions_present":true,"cve_id":"CVE-2026-89032","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-89032","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-01T15:21:54.281Z","patch_url":"https://www.suse.com/security/cve/CVE-2026-89032","primary_source":"","published":"2026-09-25T16:04:47.964Z"},{"affected":"litellm: < 1.83.9","affected_versions_present":true,"cve_id":"CVE-2026-59823","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59823","fixed":"1.83.9.","last_modified":"2026-09-17T15:07:47.837Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-hx8v-g79f-8w5f","primary_source":"","published":"2026-09-16T18:36:21.105Z"},{"affected":"< 1.88.6; >= 1.89.0, < 1.96.2","affected_versions_present":true,"cve_id":"CVE-2026-84377","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-84377","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-03T14:31:30.548Z","patch_url":"","primary_source":"","published":"2026-09-02T17:18:32.728Z"},{"affected":"< 1.83.10-stable","affected_versions_present":true,"cve_id":"CVE-2026-59819","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59819","fixed":"1.83.10-stable.","last_modified":"2026-07-09T14:30:14.779Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-4g5m-c9r5-49xf","primary_source":"","published":"2026-07-08T19:33:32.816Z"},{"affected":"litellm: < 1.84.0","affected_versions_present":true,"cve_id":"CVE-2026-59822","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59822","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-09-03T03:56:05.174Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-7488-6r32-c95q","primary_source":"","published":"2026-07-08T19:32:18.611Z"},{"affected":"< 1.83.7-stable","affected_versions_present":true,"cve_id":"CVE-2026-59820","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59820","fixed":"1.83.7-stable.","last_modified":"2026-07-09T14:37:09.457Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-5jmr-gcrj-2c9q","primary_source":"","published":"2026-07-08T19:32:11.739Z"},{"affected":"< 1.82.0-stable","affected_versions_present":true,"cve_id":"CVE-2026-59821","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59821","fixed":"1.82.0-stable.","last_modified":"2026-07-09T14:38:09.991Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-72m8-9m7m-h278","primary_source":"","published":"2026-07-08T19:14:13.265Z"},{"affected":"< 1.84.0","affected_versions_present":true,"cve_id":"CVE-2026-49468","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49468","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T00:47:34.603Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-4xpc-pv4p-pm3w","primary_source":"","published":"2026-06-22T20:37:14.494Z"},{"affected":"1.82.0; 1.82.1; 1.82.2","affected_versions_present":true,"cve_id":"CVE-2026-12799","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12799","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T16:17:02.857Z","patch_url":"","primary_source":"","published":"2026-06-21T10:00:08.928Z"},{"affected":"1.82.0; 1.82.1; 1.82.2","affected_versions_present":true,"cve_id":"CVE-2026-12798","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12798","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T17:14:45.929Z","patch_url":"","primary_source":"","published":"2026-06-21T09:30:08.242Z"},{"affected":"1.82.0; 1.82.1; 1.82.2; 1.82.3; 1.82.4; 1.82.5","affected_versions_present":true,"cve_id":"CVE-2026-12797","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12797","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T13:35:44.784Z","patch_url":"","primary_source":"","published":"2026-06-21T09:15:08.592Z"},{"affected":"1.82.0; 1.82.1; 1.82.2","affected_versions_present":true,"cve_id":"CVE-2026-12796","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12796","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T18:12:18.953Z","patch_url":"","primary_source":"","published":"2026-06-21T09:00:09.028Z"},{"affected":"1.82.0; 1.82.1; 1.82.2","affected_versions_present":true,"cve_id":"CVE-2026-12795","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12795","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-23T02:45:05.398Z","patch_url":"","primary_source":"","published":"2026-06-21T08:30:07.820Z"},{"affected":"1.82.0; 1.82.1; 1.82.2","affected_versions_present":true,"cve_id":"CVE-2026-12774","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12774","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T10:57:42.425Z","patch_url":"","primary_source":"","published":"2026-06-21T03:45:06.835Z"},{"affected":"1.59.0; 1.59.1; 1.59.2; 1.59.3; 1.59.4; 1.59.5; 1.59.6; 1.59.7","affected_versions_present":true,"cve_id":"CVE-2026-12773","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12773","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:22:10.736Z","patch_url":"","primary_source":"","published":"2026-06-21T03:15:08.647Z"},{"affected":"1.82.0; 1.82.1; 1.82.2","affected_versions_present":true,"cve_id":"CVE-2026-12772","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12772","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T17:20:24.396Z","patch_url":"","primary_source":"","published":"2026-06-21T02:00:08.882Z"},{"affected":"1.82.0; 1.82.1; 1.82.2","affected_versions_present":true,"cve_id":"CVE-2026-12771","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12771","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-22T13:33:10.626Z","patch_url":"","primary_source":"","published":"2026-06-21T01:00:12.198Z"},{"affected":"1.63.0; 1.63.1","affected_versions_present":true,"cve_id":"CVE-2026-12770","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-12770","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-06-22T18:12:38.503Z","patch_url":"https://github.com/BerriAI/litellm/pull/23781","primary_source":"","published":"2026-06-21T00:15:08.657Z"},{"affected":"< 1.83.10","affected_versions_present":true,"cve_id":"CVE-2026-47102","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47102","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-28T01:48:59.441Z","patch_url":"https://github.com/BerriAI/litellm/pull/25541","primary_source":"","published":"2026-05-21T20:34:37.893Z"},{"affected":"< 1.83.14","affected_versions_present":true,"cve_id":"CVE-2026-47101","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47101","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-28T01:48:58.689Z","patch_url":"https://github.com/BerriAI/litellm/commit/d910a95661fce3cdd36f3b06c03ecf9c46c6457c","primary_source":"","published":"2026-05-21T20:33:30.163Z"},{"affected":"litellm: >= 1.81.16, < 1.83.7","affected_versions_present":true,"cve_id":"CVE-2026-42208","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42208","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T00:58:03.861Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc","primary_source":"","published":"2026-05-08T03:38:14.124Z"},{"affected":">= 1.80.5, < 1.83.7","affected_versions_present":true,"cve_id":"CVE-2026-42203","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42203","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T00:58:06.313Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-xqmj-j6mv-4862","primary_source":"","published":"2026-05-08T03:36:58.648Z"},{"affected":"litellm: >= 1.74.2, < 1.83.7","affected_versions_present":true,"cve_id":"CVE-2026-42271","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42271","fixed":"RHSA-2026:28960: Red Hat OpenShift AI 2.25","last_modified":"2026-07-15T00:57:49.325Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-v4p8-mg3p-g94g","primary_source":"","published":"2026-05-08T03:35:16.758Z"},{"affected":"bb0639701796218a3447160e55c0f1097446e4e6085df7dfd39f476d4143743f","affected_versions_present":true,"cve_id":"CVE-2026-40217","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-40217","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:01:14.184Z","patch_url":"https://www.x41-dsec.de/lab/advisories/x41-2026-001-litellm/","primary_source":"","published":"2026-04-10T13:43:23.147Z"},{"affected":"< 1.83.0","affected_versions_present":true,"cve_id":"CVE-2026-35030","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-35030","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:03:17.104Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-jjhc-v7c2-5hh6","primary_source":"","published":"2026-04-06T16:47:02.065Z"},{"affected":"< 1.83.0","affected_versions_present":true,"cve_id":"CVE-2026-35029","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-35029","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:03:19.828Z","patch_url":"https://github.com/BerriAI/litellm/security/advisories/GHSA-53mr-6c8q-9789","primary_source":"","published":"2026-04-06T16:35:28.974Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"BerriAI"}}
