Skip to content
MediumVulnerabilityLLM-specific

GHSA-4jcj-7x88-m979: LiteLLM: MCP Proxy Has Improper Authentication

Published
Record updated
View JSON
Affected
  • litellm < 1.84.0
Fixed in
1.84.0
Known exploitation
Not listed in the CISA Known Exploited Vulnerabilities catalog at the last check.
EPSS
1.0%

Summary

A weakness in BerriAI litellm up to 1.59.8 affects the function UserAPIKeyAuth in litellm/proxy/_experimental/mcp_server/auth/user_api_key_auth_mcp.py, part of the MCP Proxy component. Manipulating this component can lead to improper authentication, and the attack can be launched remotely. A public exploit exists, and the vendor was contacted early about the disclosure.

Mitigation

The source does not state a fix yet. Check the original advisory for updates.