LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

CVE-2026-42271: BerriAI LiteLLM Command Injection Vulnerability

RBRecent Breaches Vulnerability Intelligence·Jun 8, 2026
High⚠ Actively exploited (CISA KEV)
High
Severity
Active
CISA KEV
No
Ransomware use
Jun 22, 2026
Patch deadline
⚠ Exploited in the wild. CISA added CVE-2026-42271 to its Known Exploited Vulnerabilities catalog on Jun 8, 2026, with a federal patch deadline of Jun 22, 2026 — meaning attackers are actively using it. If you run the affected software, patch it immediately.

BerriAI LiteLLM contains a command injection vulnerability that could allow any authenticated user, including holders of low-privilege internal-user keys, to run arbitrary commands on the host.

BerriAI LiteLLM contains a command injection vulnerability. This issue allows any authenticated user, including those holding low-privilege internal-user keys, to run arbitrary commands on the host system. The flaw affects deployments of this software that accept authenticated requests and pass user-controlled input to system-level command execution paths.

How it works

The weakness falls under CWE-78 and CWE-77, both describing improper neutralization of special elements used in OS commands. An attacker supplies crafted input through an authenticated session; the application incorporates that input into a command string executed by the host operating system without adequate validation or escaping.

Because the injection occurs after authentication, even accounts with limited intended privileges can trigger execution of attacker-chosen commands on the underlying host.

Am I affected? How to find it in your systems

Locate all instances of BerriAI LiteLLM in your environment, including any containerized or cloud-hosted deployments. Inventory the software versions and the authentication mechanisms in use, paying particular attention to internal-user keys or other low-privilege credentials.

How to remediate

Apply mitigations per the vendor instructions. Where a software update is provided, install it on all affected instances before re-enabling external access.

If you can't patch immediately

Place the affected systems behind network segmentation that limits inbound access to only trusted sources. Consider virtual patching through a web application firewall or reverse proxy that can inspect and block suspicious command-like patterns in requests.

If your data may have been exposed

Command injection vulnerabilities that permit arbitrary host commands have led to system compromise in other cases. You can run a free exposure scan of your email addresses to check against known breach data.

AICompiled with AI assistance from public sources and published under our editorial standards.

Details

AffectedBerriAI · LiteLLM
WeaknessCWE-78
Added to CISA KEVJun 8, 2026
Federal patch deadlineJun 22, 2026
Known ransomware useNot documented
Check if your data is exposed →

Official records: NVD · CISA KEV

← All actively-exploited vulnerabilities