← Terug naar overzicht

BerriAI LiteLLM contains an improper authentication vulnerability affecting the MCP Streamable HTTP endpoint. An unauthenticated attacker can exploit this flaw to establish an authenticated MCP session using an arbitrary Bearer token, effectively bypassing authentication controls. The vulnerability has been assigned CVE-2026-59822 and is tracked by CISA under BOD 26-04, which prioritizes security updates based on risk. The issue is documented in a GitHub security advisory (GHSA-7488-6r32-c95q) and in the NVD. CISA has classified this as high severity, requiring forensic triage per BOD 26-04 implementation guidance. Organizations using LiteLLM should apply available patches immediately to prevent unauthorized access to MCP sessions.

Affected products

  • BerriAI LiteLLM

Related CVE's

  • CVE-2026-59822

Categories

  • Enterprise Applications
  • Identity & Access
  • Web Technologies