Podatności / CISA KEV · AKTYWNIE WYKORZYSTYWANE · CVSS 8.8
CVE-2026-59822 · BerriAI LiteLLM Improper Authentication Vulnerability
- Identyfikator
- CVE-2026-59822
- CVSS
- 8.8 HIGH
- CISA KEV
- AKTYWNIE WYKORZYSTYWANE
- Producent
- BerriAI
- Produkt
- LiteLLM
- Dodano do KEV
- 2026-09-02
- Termin CISA
- 2026-09-16
BerriAI LiteLLM contains an improper authentication vulnerability in the MCP Streamable HTTP endpoint that could allow an unauthenticated attacker to establish an authenticated MCP session using an arbitrary Bearer token.